First published: Wed Dec 20 2017(Updated: )
In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Arbitrary Write vulnerability because of not validating input values from IOCtl 0x8300005c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IKARUS Antivirus | <2.16.18 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-14964 has a medium severity rating due to the potential for arbitrary write vulnerabilities.
To mitigate CVE-2017-14964, upgrade IKARUS anti.virus to version 2.16.18 or later.
CVE-2017-14964 is caused by the ntguard.sys driver not validating input values from the IOCtl 0x8300005c.
The potential impacts of CVE-2017-14964 include system instability and unauthorized access to memory.
As of the last update, there were no known active exploits for CVE-2017-14964, but it's recommended to apply the fix promptly.