CVE-2018-5218: Input Validation
Published Jan 4, 2018
·Updated
In K7 Antivirus 15.1.0306, the driver file (K7Sentry.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x950025b0.
Affected Software
1 affected component
K7Computing Antivirus=15.1.0306
Event History
Jan 4, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-5218?
CVE-2018-5218 has a severity rating that indicates it could potentially cause a denial of service condition.
2
How do I fix CVE-2018-5218?
To fix CVE-2018-5218, ensure that you update K7 Antivirus to the latest version provided by K7 Computing.
3
Who is affected by CVE-2018-5218?
CVE-2018-5218 affects local users running K7 Antivirus version 15.1.0306.
4
What impact does CVE-2018-5218 have?
CVE-2018-5218 can cause a Blue Screen of Death (BSOD) or possibly other unspecified impacts due to input validation issues.
5
Is there a way to exploit CVE-2018-5218?
Yes, CVE-2018-5218 can be exploited by manipulating the input values in IOCtl 0x950025b0.