CVE-2017-16555: High severity k7 computing antivirus vulnerability
Published Jan 16, 2018
·Updated
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.
Affected Software
7 affected components
K7Computing Antivirus<15.1.0.53
K7Computing Antivirus<15.1.0308
K7Computing Endpoint<14.2.0137
K7Computing Internet Security<15.1.0297
K7Computing Total Security<15.1.0324
K7Computing Total Security<16.0.0131
K7Computing Ultimate Security<15.1.0324
Event History
Jan 16, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-16555?
CVE-2017-16555 has been classified with a high severity level due to its potential for local privilege escalation.
2
How do I fix CVE-2017-16555?
To fix CVE-2017-16555, upgrade to K7 Antivirus Premium version 15.1.0.53 or later.
3
Who is affected by CVE-2017-16555?
CVE-2017-16555 affects users of K7 Antivirus Premium, Plus, Endpoint, Internet Security, Total Security, and Ultimate Security prior to specified versions.
4
What type of vulnerability is CVE-2017-16555?
CVE-2017-16555 is a local privilege escalation vulnerability.
5
What can an attacker achieve with CVE-2017-16555?
An attacker can gain elevated privileges on a system through the exploitation of CVE-2017-16555.