First published: Sun Mar 25 2018(Updated: )
In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_x86.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c402000.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IOBit Advanced SystemCare Ultimate | =11.0.1.58 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-9003 is high, with a severity value of 7.8.
The affected software for CVE-2018-9003 is IOBit Advanced SystemCare Ultimate version 11.0.1.58.
The impact of CVE-2018-9003 is a denial of service (BSOD) or possibly unspecified other impacts.
Local users can exploit CVE-2018-9003 by not validating input values from IOCtl 0x9c402000 in the Monitor_x86.sys driver file.
Yes, a proof of concept for CVE-2018-9003 is available at the following link: [GitHub - POC_BSOD](https://github.com/D0neMkj/POC_BSOD/tree/master/Advanced%20SystemCare%20Utimate/Monitor_win7_x86.sys-0x9c402000)