CVE-2023-1626
MEDIUMJianming Antivirus 16.2.2022.418 - Memory Corruption
Title source: llmDescription
A vulnerability was found in Jianming Antivirus 16.2.2022.418. It has been declared as critical. This vulnerability affects unknown code in the library kvcore.sys of the component IoControlCode Handler. The manipulation leads to memory corruption. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-224008.
References (4)
Core 4
Core References
Third Party Advisory vdb-entry
technical-description
https://vuldb.com/?id.224008
Permissions Required, Third Party Advisory signature
permissions-required
https://vuldb.com/?ctiid.224008
Third Party Advisory broken-link
https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/unassigned31
Exploit, Third Party Advisory exploit
https://drive.google.com/file/d/1soMFXUAYkCttFDA_icry6q-irb2jdAxw/view
Scores
CVSS v3
5.3
EPSS
0.0034
EPSS Percentile
25.4%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Details
CWE
CWE-119
Status
published
Products (1)
jiangmin/jiangmin_antivirus
16.2.2022.418
Published
Mar 25, 2023
Tracked Since
Feb 18, 2026