Denial of Service Vulnerability in Jingyun Antivirus Software
CVE-2018-16722
7.8HIGH
What is CVE-2018-16722?
In Jingyun Antivirus version 2.4.2.39, a vulnerability exists within the driver file ZySandbox.sys that allows local users to execute a denial of service attack. This is achieved by sending invalid input values via IOCtl 0x12360094, potentially leading to system instability or a Blue Screen of Death (BSOD). This vulnerability highlights the importance of input validation in driver development, as it can have significant implications for system reliability and user experience.
