Bkav Home v7816 - Kernel Memory Leak
5,5
Medium
Discovered by

Offensive Team, Fluid Attacks
Summary
Full name
Bkav Home v7816, build 2403161130 - Kernel Memory Leak
Code name
State
Public
Release date
22 abr 2024
Affected product
Bkav Home
Vendor
Bkav Corporation
Affected version(s)
Version 7816, build 2403161130
Vulnerability name
Kernel Memory Leak
Vulnerability type
Remotely exploitable
No
CVSS v3.0 vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS v3.0 base score
5.5
Exploit available
Yes
CVE ID(s)
Description
Bkav Home v7816, build 2403161130 is vulnerable to a Memory Information Leak vulnerability by triggering the 0x222240
IOCTL code of the BkavSDFlt.sys
driver.
Vulnerability
The 0x222240
IOCTL code of the BkavSDFlt.sys
driver allows to leak the kernel address of an global variable which has always the same offset from the base module, making the kASLR
protection useless on that module.
The handling code of the 0x222240
IOCTL calls sub_1400010D8
which copies the absolute address of a global variable into the output buffer of the IRP object.
The PoC will dump the absolute address of such global variable:
Our security policy
We have reserved the ID CVE-2024-2760 to refer to this issue from now on.
System Information
Version: Bkav Home v7816, build 2403161130
Operating System: Windows
Mitigation
There is currently no patch available for this vulnerability.
References
Vendor page https://www.bkav.com/
Product page https://www.bkav.com/bkav-home
Timeline
IA generativa
21 mar 2024
Vendor contacted
21 mar 2024
Public disclosure
22 abr 2024