← Back

CVE-2014-2382

nvd nist
Published: Nov 20, 2014Modified: May 6, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

The DfDiskLo.sys driver in Faronics Deep Freeze Standard and Enterprise 8.10 and earlier allows local administrators to cause a denial of service (crash) and execute arbitrary code via a crafted IOCTL request that writes to arbitrary memory locations, related to the IofCallDriver function.

Affected (2)

1 product
Deep Freeze
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Faronics
Up to 8.10
Up to 8.10

Related CWEs

Timeline

No history available yet.