Local Denial of Service Vulnerability in Windows Optimization Master
CVE-2018-8991

7.8HIGH

What is CVE-2018-8991?

In Windows Optimization Master version 7.99.13.604, the driver file WoptiHWDetect.SYS is susceptible to a vulnerability that enables local users to potentially trigger a denial of service (BSOD) through improper validation of input values from IOCtl 0xf1002009. This flaw allows attackers to disrupt the normal operation of the system, leading to unexpected crashes and a significant impact on system availability.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.