CVE-2018-5088: Input Validation
Published Jan 3, 2018
·Updated
In K7 AntiVirus 15.1.0306, the driver file (K7FWHlpr.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x8300211C.
Affected Software
1 affected component
K7Computing Antivirus=15.1.0306
Event History
Jan 3, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-5088?
CVE-2018-5088 is classified as a moderate severity vulnerability due to its potential to cause a denial of service.
2
How do I fix CVE-2018-5088?
To fix CVE-2018-5088, update K7 AntiVirus to the latest version that addresses this vulnerability.
3
What type of impact does CVE-2018-5088 have?
CVE-2018-5088 can cause a denial of service, potentially leading to a blue screen of death (BSOD) on the affected system.
4
Who is affected by CVE-2018-5088?
CVE-2018-5088 affects local users of K7 AntiVirus version 15.1.0306.
5
What component of K7 AntiVirus does CVE-2018-5088 involve?
CVE-2018-5088 involves the driver file K7FWHlpr.sys, which fails to validate input values properly.