K7 Antivirus Denial of Service Vulnerability Affecting Local Users
CVE-2018-5217
7.8HIGH
What is CVE-2018-5217?
The K7 Antivirus product version 15.1.0306 is affected by a vulnerability that allows local users to exploit the driver file (K7Sentry.sys). This vulnerability arises from the failure to validate input values associated with the IOCtl command 0x95002578. By manipulating these input values, an attacker can induce a denial of service condition, potentially leading to a blue screen of death (BSOD) or other unspecified impacts. It poses risks to system stability and user security for those utilizing the affected version.