CVE-2024-23441 is a Denial of Service (DoS) vulnerability affecting Vba32 Antivirus v3.36.0, specifically within its Vba32m64.sys driver. An attacker with local user privileges can trigger this vulnerability by sending a crafted IOCTL code (0x2220A7), leading to system instability or a crash. Rated as MEDIUM severity (CVSS 5.5), its impact is limited to availability, with no known active exploitation, publicly available exploit code, or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.36.0CPE matchmatch criteria | cpe:2.3:a:anti-virus:vba32:3.36.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.