PT-2024-15820 · Unknown · Superantispyware Pro X+1

Andres Roldan

·

Published

2024-01-29

·

Updated

2025-05-19

·

CVE-2024-0788

CVSS v3.1

6.6

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H
Name of the Vulnerable Software and Affected Versions SUPERAntiSpyware Pro X version 10.0.1260
Description The issue concerns kernel-level API parameters manipulation and Denial of Service vulnerabilities. This can be triggered by manipulating the 0x9C402140 IOCTL code of the saskutil64.sys driver.
Recommendations For SUPERAntiSpyware Pro X version 10.0.1260, consider disabling the saskutil64.sys driver until a patch is available to prevent exploitation of the Denial of Service vulnerability. Restrict access to the IOCTL code 0x9C402140 to minimize the risk of manipulation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Weakness Enumeration

Related Identifiers

CVE-2024-0788

Affected Products

Superantispyware Pro X
Saskutil64.Sys