Jiangmin Antivirus Vulnerability Allowing Denial of Service via KSysCall.sys Driver
CVE-2018-6779

7.8HIGH

Key Information:

Vendor

Jiangmin

Status
Vendor
CVE Published:
3 October 2022

What is CVE-2018-6779?

In Jiangmin Antivirus 16.0.0.100, the KSysCall.sys driver file is susceptible to improper input validation from local users. By exploiting IOCtl 0x9A008240, attackers can trigger a denial of service, potentially leading to system crashes (BSOD) or other unverified impacts. This vulnerability underscores the need for stringent validation processes in driver software to prevent unauthorized access and maintain system integrity.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.