SmartDefragDriver.sys (2.0) in IObit Smart Defrag 6 never frees an executable kernel pool that is allocated with user defined bytes and size when IOCTL 0x9C401CC0 is called. This kernel pointer can be leaked if the kernel pool becomes a "big" pool.
References
Link | Resource |
---|---|
https://downwithup.github.io/CVEPosts.html | Exploit Vendor Advisory |
https://www.iobit.com/en/iobitsmartdefrag.php | Product Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2019-04-11T19:34:00
Updated: 2019-04-11T19:34:00
Reserved: 2019-01-18T00:00:00
Link: CVE-2019-6493
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-04-11T20:29:00.603
Modified: 2020-08-24T17:37:01.140
Link: CVE-2019-6493
JSON object: View
Redhat Information
No data.
CWE