IMFCameraProtect.sys in IObit Malware Fighter 6.2 (and possibly lower versions) is vulnerable to a stack-based buffer overflow. The attacker can use DeviceIoControl to pass a user specified size which can be used to overwrite return addresses. This can lead to a denial of service or code execution attack.
Advisories
Source ID Title
EUVD EUVD EUVD-2018-9765 IMFCameraProtect.sys in IObit Malware Fighter 6.2 (and possibly lower versions) is vulnerable to a stack-based buffer overflow. The attacker can use DeviceIoControl to pass a user specified size which can be used to overwrite return addresses. This can lead to a denial of service or code execution attack.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T11:01:14.844Z

Reserved: 2018-10-07T00:00:00

Link: CVE-2018-18026

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-10-19T22:29:01.193

Modified: 2024-11-21T03:55:23.850

Link: CVE-2018-18026

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses