Denial of Service Vulnerability in K7 AntiVirus by K7 Computing
CVE-2018-5083

7.8HIGH

Key Information:

Status
Vendor
CVE Published:
3 January 2018

What is CVE-2018-5083?

A vulnerability in K7 AntiVirus 15.1.0306 allows local users to disrupt system operations due to improper input validation in the driver file (K7FWHlpr.sys). By exploiting this flaw with IOCtl 0x8300215B, attackers may trigger a blue screen of death (BSOD) or potentially cause other, unspecified impacts.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.