Description
A vulnerability classified as problematic was found in IObit Malware Fighter 9.4.0.776. This vulnerability affects the function 0x222010 in the library ObCallbackProcess.sys of the component IOCTL Handler. The manipulation leads to denial of service. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-224020.
References (4)
Core 4
Core References
Third Party Advisory vdb-entry
technical-description
https://vuldb.com/?id.224020
Third Party Advisory signature
permissions-required
https://vuldb.com/?ctiid.224020
Exploit, Third Party Advisory related
https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/CVE-2023-1640
Product, Third Party Advisory exploit
https://drive.google.com/file/d/1AcwSxTA0_zh7mmxU5J8WphRqg_mQsO-g/view
Scores
CVSS v3
5.5
EPSS
0.0032
EPSS Percentile
23.4%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Details
CWE
CWE-404
Status
published
Products (1)
iobit/malware_fighter
9.4.0.776
Published
Mar 26, 2023
Tracked Since
Feb 18, 2026