PT-2023-21936 · Unknown · Escan Antivirus

Zeze7W

·

Published

2023-05-24

·

Updated

2024-05-17

·

CVE-2023-2875

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions eScan Antivirus version 22.0.1400.2443
Description A problematic vulnerability was found in the function 0x22E008u in the library PROCOBSRVESX.SYS of the component IoControlCode Handler. The manipulation leads to null pointer dereference. It is possible to launch the attack on the local host.
Recommendations For eScan Antivirus version 22.0.1400.2443, as a temporary workaround, consider disabling the 0x22E008u function in the PROCOBSRVESX.SYS library until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2023-2875

Affected Products

Escan Antivirus