CVE-2024-23440 - CVE House
Back to Database
Status published High CVE-2024-23440

Vba32 Antivirus v3.36.0 - Arbitrary Memory Read

Vulnerability Description

Vba32 Antivirus v3.36.0 is vulnerable to an Arbitrary Memory Read vulnerability. The 0x22200B IOCTL code of the Vba32m64.sys driver allows to read up to 0x802 of memory from ar arbitrary user-supplied pointer.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-23440

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

VirusBlokAda

View all reports →

Affected Software

Vba32 Antivirus
Vulnerable Versions:
3.36.0

Timeline

Official Publish: February 13th, 2024
Last Modified: May 19th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Weaknesses (CWE)