CVE-2017-16557: High severity k7 computing antivirus vulnerability
Published Jan 16, 2018
·Updated
K7 Antivirus Premium before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.
Affected Software
7 affected components
K7Computing Antivirus<15.1.0.53
K7Computing Antivirus<15.1.0308
K7Computing Endpoint<14.2.0137
K7Computing Internet Security<15.1.0297
K7Computing Total Security<15.1.0324
K7Computing Total Security<16.0.0131
K7Computing Ultimate Security<15.1.0324
Event History
Jan 16, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-16557?
CVE-2017-16557 has a medium severity rating due to the potential for local privilege escalation.
2
How do I fix CVE-2017-16557?
To mitigate CVE-2017-16557, update K7 Antivirus Premium to version 15.1.0.53 or later.
3
Who is affected by CVE-2017-16557?
Users of K7 Antivirus Premium versions prior to 15.1.0.53, along with several other K7 security products, are affected by CVE-2017-16557.
4
What type of vulnerability is CVE-2017-16557?
CVE-2017-16557 is classified as a local privilege escalation vulnerability.
5
When was CVE-2017-16557 reported?
CVE-2017-16557 was reported on November 6, 2017.