Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
VS Revo RevoUninstaller IOCTL RevoDetector.sys IOCtl_Handler heap-based overflow
Vulnerability Description
A vulnerability was identified in VS Revo RevoUninstaller 2.5.x/2.6.x. The affected element is the function IOCtl_Handler in the library RevoDetector.sys of the component IOCTL Handler. Such manipulation leads to heap-based buffer overflow. The attack must be carried out locally. The exploit is publicly available and might be used. Upgrading to version 2.7.0 is sufficient to fix this issue. It is recommended to upgrade the affected component.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
堆缓冲区溢出
Vulnerability Title
vs revo revouninstaller 缓冲区错误漏洞
Vulnerability Description
revouninstaller是vs revo公司的一款软件卸载工具。 VS Revo RevoUninstaller 2.5.x版本和2.6.x版本存在缓冲区错误漏洞,该漏洞源于IOCTL Handler组件中RevoDetector.sys库的IOCtl_Handler函数存在堆缓冲区溢出,可能导致本地攻击者利用漏洞造成堆缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A