CVE-2014-9641

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
06/02/2015
Last modified:
12/04/2025

Description

The tmeext.sys driver before 2.0.0.1015 in Trend Micro Antivirus Plus, Internet Security, and Maximum Security allows local users to write to arbitrary memory locations, and consequently gain privileges, via a crafted 0x00222400 IOCTL call.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:trendmicro:tmeext.sys:*:*:*:*:*:*:*:* 2.0.0.1014 (including)