Vba32 Antivirus v3.36.0 is vulnerable to an Arbitrary Memory Read vulnerability. The 0x22200B IOCTL code of the Vba32m64.sys driver allows to read up to 0x802 of memory from ar arbitrary user-supplied pointer.
History

Mon, 19 May 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 19 May 2025 18:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 6.3, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H'}

cvssV3_1

{'score': 7.1, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H'}


Thu, 17 Oct 2024 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Anti-virus
Anti-virus vba32
CPEs cpe:2.3:a:anti-virus:vba32:3.36.0:*:*:*:*:*:*:*
Vendors & Products Anti-virus
Anti-virus vba32

cve-icon MITRE

Status: PUBLISHED

Assigner: Fluid Attacks

Published: 2024-02-13T15:01:12.248Z

Updated: 2025-05-19T18:21:17.618Z

Reserved: 2024-01-16T20:47:02.910Z

Link: CVE-2024-23440

cve-icon Vulnrichment

Updated: 2024-08-01T23:06:24.174Z

cve-icon NVD

Status : Modified

Published: 2024-02-13T15:15:09.070

Modified: 2025-05-19T19:15:47.370

Link: CVE-2024-23440

cve-icon Redhat

No data.