Impact
A heap-based buffer overflow occurs in an unknown function of the SecureAge CatchPulse driver library saappctl.sys. The overflow can overwrite heap memory, as identified by CWE‑119 and CWE‑122. If successfully exploited, it could allow an attacker with local privileges to execute arbitrary code, compromising system integrity and confidentiality.
Affected Systems
SecureAge CatchPulse versions up to and including 10.9.3 that install the driver saappctl.sys. Any machine running these versions is potentially vulnerable.
Risk and Exploitability
The vulnerability has a CVSS score of 8.5, indicating high severity. The EPSS score is below 1 %, implying a very low current likelihood of exploitation. It is not listed in CISA’s KEV catalog. The attack vector is local; an attacker must have local access to trigger the overflow. Although publicly disclosed, exploit code may be available, but this is not confirmed.
OpenCVE Enrichment