Description
A vulnerability, which was classified as problematic, was found in IObit Malware Fighter 9.4.0.776. Affected is the function 0x222034/0x222038/0x22203C/0x222040 in the library ObCallbackProcess.sys of the component IOCTL Handler. The manipulation leads to denial of service. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. VDB-224022 is the identifier assigned to this vulnerability.
References (4)
Core 4
Core References
Third Party Advisory vdb-entry
technical-description
https://vuldb.com/?id.224022
Third Party Advisory signature
permissions-required
https://vuldb.com/?ctiid.224022
Exploit, Third Party Advisory related
https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/CVE-2023-1642
Product, Third Party Advisory exploit
https://drive.google.com/file/d/1iWdqJ9PsBp1W5xINpUdQ28xbx_tB9xxf/view
Scores
CVSS v3
5.5
EPSS
0.0032
EPSS Percentile
23.2%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Details
CWE
CWE-404
Status
published
Products (1)
iobit/malware_fighter
9.4.0.776
Published
Mar 26, 2023
Tracked Since
Feb 18, 2026