CVE-2018-5082: Input Validation
Published Jan 3, 2018
·Updated
In K7 AntiVirus 15.1.0306, the driver file (K7FWHlpr.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x83002128.
Affected Software
1 affected component
K7Computing Antivirus=15.1.0306
Event History
Jan 3, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-5082?
CVE-2018-5082 is classified as a denial of service vulnerability.
2
How do I fix CVE-2018-5082?
Updating K7 AntiVirus to a version beyond 15.1.0306 is the recommended fix for CVE-2018-5082.
3
What impact can CVE-2018-5082 have on my system?
CVE-2018-5082 can lead to a blue screen of death (BSOD) or potentially other unspecified impacts.
4
Which software versions are affected by CVE-2018-5082?
CVE-2018-5082 specifically affects K7 AntiVirus version 15.1.0306.
5
Is CVE-2018-5082 a local or remote vulnerability?
CVE-2018-5082 is a local vulnerability that can be exploited by local users.