CVE-2018-5219: Input Validation
Published Jan 4, 2018
·Updated
In K7 Antivirus 15.1.0306, the driver file (K7FWHlpr.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x83002168.
Affected Software
1 affected component
K7Computing Antivirus=15.1.0306
Event History
Jan 4, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-5219?
CVE-2018-5219 is classified as a high severity vulnerability due to its potential to cause a denial of service.
2
How do I fix CVE-2018-5219?
To fix CVE-2018-5219, update K7 Antivirus to the latest version that addresses this vulnerability.
3
Who is affected by CVE-2018-5219?
K7 Antivirus users, specifically those using version 15.1.0306, are affected by CVE-2018-5219.
4
What impact does CVE-2018-5219 have on systems?
CVE-2018-5219 can lead to a denial of service, resulting in a blue screen of death (BSOD) on affected systems.
5
What component of K7 Antivirus is vulnerable in CVE-2018-5219?
The vulnerable component in CVE-2018-5219 is the driver file K7FWHlpr.sys.