Deep Freeze 9.00.020.5760 is vulnerable to an out-of-bounds read vulnerability by triggering the 0x70014 IOCTL code of the FarDisk.sys driver.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://fluidattacks.com/advisories/kanka/ | third party advisory |
https://www.faronics.com/products/deep-freeze | product |