PT-2018-18802 · Iobit · Advanced Systemcare Ultimate
Published
2018-03-27
·
Updated
2018-03-30
·
CVE-2018-9040
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Advanced SystemCare Ultimate version 11.0.1.58
Description
The issue arises from the driver file Monitor win10 x64.sys, which fails to validate input values from IOCtl 0x9c4060c4, allowing local users to cause a denial of service (BSOD) or possibly have other unspecified impacts.
Recommendations
For Advanced SystemCare Ultimate version 11.0.1.58, consider disabling the Monitor win10 x64.sys driver file as a temporary workaround until a patch is available.
Exploit
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Advanced Systemcare Ultimate