CVE Published: 24/04/2018 |
CVE Updated: 17/09/2024 |
CVE Year: 2016 Source: talos |
Vendor: Invincea |
Product: X Status : PUBLISHED
CVE-2016-9038 Description
An exploitable double fetch vulnerability exists in the SboxDrv.sys driver functionality of Invincea-X 6.1.3-24058. A specially crafted input buffer and race condition can result in kernel memory corruption, which could result in privilege escalation. An attacker needs to execute a special application locally to trigger this vulnerability.