CVE-2018-10828
Last modified
CVE-2018-10828 is a vulnerability of currently unknown severity. An issue was discovered in Alps Pointing-device Driver 10.1.101.207. ApMsgFwd.exe allows the current user to map and write to the "ApMsgFwd File Mapping Object" section. EPSS estimates a 1.40% chance of exploitation in the next 30 days.
Description
An issue was discovered in Alps Pointing-device Driver 10.1.101.207. ApMsgFwd.exe allows the current user to map and write to the "ApMsgFwd File Mapping Object" section. ApMsgFwd.exe uses the data written to this section as arguments to functions. This causes a denial of service condition when invalid pointers are written to the mapped section. This driver has been used with Dell, ThinkPad, and VAIO devices.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Alps | Pointing-Device Driver | 10.1.101.207 |
References
- https://www.exploit-db.com/exploits/44610/Third Party Advisory, VDB Entry
- https://www.exploit-db.com/exploits/44610/Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2018-10828?
How severe is CVE-2018-10828?
How do I fix CVE-2018-10828?
Are you affected by CVE-2018-10828?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
