CVE-2019-1346
MEDIUMWindows - Denial of Service via Memory Object Handling
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2019-1346. PoCs published by Google Security Research.
AI-analyzed exploit summary The exploit demonstrates a Windows kernel crash (BSOD) via a malformed PE image loaded with LoadLibraryEx, triggering an OOB read in CI!HashKComputeFirstPageHash. The PoC includes a minimized PE file that causes a system panic when processed by Explorer or related APIs.
Description
A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-1343, CVE-2019-1347.
Exploits (1)
The exploit demonstrates a Windows kernel crash (BSOD) via a malformed PE image loaded with LoadLibraryEx, triggering an OOB read in CI!HashKComputeFirstPageHash. The PoC includes a minimized PE file that causes a system panic when processed by Explorer or related APIs.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H