First published: Wed Jan 03 2018(Updated: )
In K7 AntiVirus 15.1.0306, the driver file (K7FWHlpr.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x83002124.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
K7 Computing AntiVirus | =15.1.0306 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-5085 has been classified as a medium severity vulnerability due to its potential to cause a denial of service.
To mitigate CVE-2018-5085, it is recommended to update K7 AntiVirus to a version that addresses this issue.
CVE-2018-5085 affects users of K7 AntiVirus version 15.1.0306.
CVE-2018-5085 can be exploited to cause a denial of service, specifically resulting in a blue screen of death (BSOD).
CVE-2018-5085 is not remotely exploitable as it requires local access to the system to trigger the vulnerability.