CVE-2018-5087: Input Validation
Published Jan 3, 2018
·Updated
In K7 AntiVirus 15.1.0306, the driver file (K7FWHlpr.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x83002100.
Affected Software
1 affected component
K7Computing Antivirus=15.1.0306
Event History
Jan 3, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-5087?
CVE-2018-5087 is classified as a high-severity vulnerability due to its potential to cause a denial of service.
2
How do I fix CVE-2018-5087?
To fix CVE-2018-5087, update to a version of K7 AntiVirus that addresses this vulnerability.
3
What is the impact of CVE-2018-5087?
The impact of CVE-2018-5087 includes the potential for local users to trigger a blue screen of death (BSOD) or other unspecified effects.
4
Which software versions are affected by CVE-2018-5087?
CVE-2018-5087 affects K7 AntiVirus version 15.1.0306.
5
How can users detect instances of CVE-2018-5087?
Users can detect instances of CVE-2018-5087 by monitoring for system crashes or irregular behavior following the use of IOCtl 0x83002100.