First published: Tue Feb 05 2019(Updated: )
An exploitable kernel memory disclosure vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTEMS WibuKey.sys Version 6.40 (Build 2400).A specially crafted IRP request can cause the driver to return uninitialized memory, resulting in kernel memory disclosure. An attacker can send an IRP request to trigger this vulnerability.
Credit: talos-cna@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
=6.40 | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-3989 is a kernel memory disclosure vulnerability in WIBU-SYSTEMS WibuKey.sys Version 6.40.
The severity of CVE-2018-3989 is medium, with a severity value of 5.5.
By sending a specially crafted IRP request, an attacker can cause the driver to return uninitialized memory, resulting in kernel memory disclosure.
CVE-2018-3989 can be exploited by an attacker sending a malicious IRP request to the vulnerable driver.
Yes, a fix is available for CVE-2018-3989. It is recommended to update to a patched version of WIBU-SYSTEMS WibuKey.sys.