CVE-2020-9453: Null Pointer Dereference
In Epson iProjection v2.30, the driver file EMPMPAU.sys allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9C402406 and IOCtl 0x9C40240A. (0x9C402402 has only a NULL pointer dereference.) This affects \Device\EMPMPAUIO and \DosDevices\EMPMPAU.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2020-9453?
CVE-2020-9453 is a vulnerability in Epson iProjection v2.30 that allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact.
How severe is CVE-2020-9453?
CVE-2020-9453 has a severity level of medium with a CVSS score of 5.5.
How does CVE-2020-9453 affect Epson iProjection?
CVE-2020-9453 affects Epson iProjection v2.30 by allowing local users to cause a denial of service or have other unspecified impact.
Is there a fix available for CVE-2020-9453?
At the moment, there is no known fix for CVE-2020-9453. It is recommended to follow the vendor's security advisories and updates for any patches or mitigation measures.
Are there any references for CVE-2020-9453?
Yes, you can find more information about CVE-2020-9453 on the official Epson website, their support page, and the GitHub repository containing kernel exploits.