CVE-2017-16551: High severity k7 computing antivirus vulnerability
Published Jan 16, 2018
·Updated
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.
Affected Software
7 affected components
K7Computing Antivirus<15.1.0.53
K7Computing Antivirus<15.1.0308
K7Computing Endpoint<14.2.0137
K7Computing Internet Security<15.1.0297
K7Computing Total Security<15.1.0324
K7Computing Total Security<16.0.0131
K7Computing Ultimate Security<15.1.0324
Event History
Jan 16, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-16551?
CVE-2017-16551 is classified as a privilege escalation vulnerability affecting K7 Antivirus products.
2
How do I fix CVE-2017-16551?
To fix CVE-2017-16551, update K7 Antivirus to version 15.1.0.53 or later.
3
Who is impacted by CVE-2017-16551?
Local users of K7 Antivirus Premium, K7 Total Security, K7 Internet Security, and related products prior to the specified versions are impacted by CVE-2017-16551.
4
What type of vulnerability is CVE-2017-16551?
CVE-2017-16551 is a privilege escalation vulnerability that allows local users to gain higher privileges.
5
Is there a workaround for CVE-2017-16551?
There are no official workarounds for CVE-2017-16551 beyond updating to the patched version.