Impact
The vulnerability resides in the IOCtl_Handler function of RevoDetector.sys within VS Revo RevoUninstaller 2.5.x/2.6.x, causing a heap‑based buffer overflow when an attacker supplies malformed IOCTL input. The overflow can corrupt memory on the local machine and allows arbitrary code execution or privilege escalation. This flaw is a classic buffer overflow flaw identified by CWE‑119 and CWE‑122 and requires local execution of a crafted IOCTL call.
Affected Systems
Affected products are VS Revo RevoUninstaller version 2.5.x and 2.6.x. No other versions were indicated in the CNA data.
Risk and Exploitability
The flaw has a CVSS score of 8.5, indicating high severity. No EPSS score is available, but public exploit code is already released and the vulnerability is only exploitable by a local attacker. The exploit is not listed in the CISA KEV catalog, although the public disclosure and available proof‑of‑concept underscore the risk. Attackers need local access to the target system and the ability to send an IOCTL to RevoDetector.sys; from there, the malicious payload is able to execute arbitrary code with the privileges of the current user.
OpenCVE Enrichment