PT-2023-16990 · Unknown · Watchdog Anti-Virus

Zeze7W

·

Published

2023-03-17

·

Updated

2024-05-17

·

CVE-2023-1446

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Watchdog Anti-Virus version 1.4.214.0
Description A problematic vulnerability was found in Watchdog Anti-Virus, affecting the function in the library wsdk-driver.sys of the component IoControlCode Handler. This leads to denial of service. The attack must be approached locally, and the exploit has been disclosed to the public.
Recommendations For Watchdog Anti-Virus version 1.4.214.0, consider disabling the affected functionality in the wsdk-driver.sys library until a patch is available. Restrict access to the IoControlCode Handler component to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Resource Release

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2023-1446

Affected Products

Watchdog Anti-Virus