First published: Tue Apr 24 2018(Updated: )
An exploitable double fetch vulnerability exists in the SboxDrv.sys driver functionality of Invincea-X 6.1.3-24058. A specially crafted input buffer and race condition can result in kernel memory corruption, which could result in privilege escalation. An attacker needs to execute a special application locally to trigger this vulnerability.
Credit: talos-cna@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sophos Invincea-x | =6.1.3-24058 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.