First published: Thu Oct 25 2018(Updated: )
An exploitable arbitrary write vulnerability exists in the 0x2222CC IOCTL handler functionality of Sophos HitmanPro.Alert 3.7.6.744. A specially crafted IRP request can cause the driver to write data under controlled by an attacker address, resulting in memory corruption. An attacker can send IRP request to trigger this vulnerability.
Credit: talos-cna@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sophos HitmanPro.Alert | =3.7.6.744 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2018-3971.
The severity of CVE-2018-3971 is critical, with a severity value of 7.8.
Sophos HitmanPro.Alert version 3.7.6.744 is affected by CVE-2018-3971.
The CWE ID for this vulnerability is CWE-123.
Yes, there are references available for CVE-2018-3971. You can find them at the following links: [SecurityFocus](http://www.securityfocus.com/bid/105743) and [Talos Intelligence](https://www.talosintelligence.com/vulnerability_reports/TALOS-2018-0636).