Denial of Service Vulnerability in Jingyun Antivirus by Jingyun Technology
CVE-2018-16719

7.8HIGH

Key Information:

Vendor

V-secure

Vendor
CVE Published:
23 November 2020

What is CVE-2018-16719?

In Jingyun Antivirus version 2.4.2.39, a security flaw within the driver file hookbody.sys allows local users to trigger a denial of service condition. This occurs due to insufficient validation of input values from IOCtl 0x00221482. Exploiting this vulnerability can lead to a blue screen of death (BSOD) or potentially other unspecified impacts on the system.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.