CVE-2024-1096 Vulnerability Details

  /     /     /  

CVE-2024-1096 Metadata Quick Info

CVE Published: 13/02/2024 | CVE Updated: 27/08/2024 | CVE Year: 2024
Source: Fluid Attacks | Vendor: Filseclab | Product: Twister Antivirus
Status : PUBLISHED

CVE-2024-1096 Description

Twister Antivirus v8.17 is vulnerable to a Denial of Service vulnerability by triggering the 0x80112067, 0x801120CB 0x801120CC 0x80112044, 0x8011204B, 0x8011204F, 0x80112057, 0x8011205B, 0x8011205F, 0x80112063, 0x8011206F, 0x80112073, 0x80112077, 0x80112078, 0x8011207C and 0x80112080 IOCTL codes of the fildds.sys driver.

Metrics

CVSS Version: 3.1 | Base Score: 5.5 MEDIUM
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

l➤ Exploitability Metrics:
    Attack Vector (AV)* LOCAL
    Attack Complexity (AC)* LOW
    Privileges Required (PR)* LOW
    User Interaction (UI)* NONE
    Scope (S)* UNCHANGED

l➤ Impact Metrics:
    Confidentiality Impact (C)* NONE
    Integrity Impact (I)* NONE
    Availability Impact (A)* HIGH

Weakness Enumeration (CWE)

CWE-ID: CWE-476
CWE Name: CWE-476 NULL Pointer Dereference
Source: Filseclab

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID: CAPEC-123
CAPEC Description: CAPEC-123 Buffer Manipulation


Source: NVD (National Vulnerability Database).