2.1
CVSSv2

CVE-2014-100039

Published: 13/01/2015 Updated: 14/01/2015
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

mbae.sys in Malwarebytes Anti-Exploit prior to 1.05.1.2014 allows local users to cause a denial of service (crash) via a crafted size in an unspecified IOCTL call, which triggers an out-of-bounds read. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

malwarebytes malwarebytes anti-exploit

Exploits

/* Exploit Title - MalwareBytes Anti-Exploit Out-of-bounds Read DoS Date - 19th January 2015 Discovered by - Parvez Anwar (@parvezghh) Vendor Homepage - wwwmalwarebytesorg Tested Version - 10311220, 10411012 Driver Version - no version set - mbaesys Tested on OS - 32bit Windows XP SP3 and Windows 7 SP1 O ...
MalwareBytes Anti-Exploit versions 10311220 and 10411012 suffer from a denial of service vulnerability ...