CVE-2009-0824

EXPLOITED RANSOMWARE

Elaborate Bytes ElbyCDIO.sys <=6.0.2.0 - DoS

Title source: llm

Description

Elaborate Bytes ElbyCDIO.sys 6.0.2.0 and earlier, as distributed in SlySoft AnyDVD before 6.5.2.6, Virtual CloneDrive 5.4.2.3 and earlier, CloneDVD 2.9.2.0 and earlier, and CloneCD 5.3.1.3 and earlier, uses the METHOD_NEITHER communication method for IOCTLs and does not properly validate a buffer associated with the Irp object, which allows local users to cause a denial of service (system crash) via a crafted IOCTL call.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Nikita Tarakanov · textlocalwindows
https://www.exploit-db.com/exploits/32850

Scores

EPSS 0.0011
EPSS Percentile 29.2%

Details

VulnCheck KEV 2018-03-06
Ransomware Use Confirmed
CWE
CWE-119
Status published
Products (4)
slysoft/anydvd < 6.5.2.2
slysoft/clonecd < 5.3.1.3
slysoft/clonedvd < 2.9.2.0
slysoft/virtualclonedrive < 5.4.2.3
Published Mar 14, 2009
Tracked Since Feb 18, 2026