CVE-2018-5410: Dokan file system driver contains a stack-based buffer overflow
Dokan, versions between 1.0.0.5000 and 1.2.0.1000, are vulnerable to a stack-based buffer overflow in the dokan1.sys driver. An attacker can create a device handle to the system driver and send arbitrary input that will trigger the vulnerability. This vulnerability was introduced in the 1.0.0.5000 version update.
Affected Software
Remediation
Patch Available
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2018-5410?
CVE-2018-5410 is rated as a critical vulnerability due to its potential for exploitation through a stack-based buffer overflow.
How do I fix CVE-2018-5410?
To fix CVE-2018-5410, you should update Dokan to version 1.2.1.1000 or later.
Who is affected by CVE-2018-5410?
CVE-2018-5410 affects all versions of Dokan from 1.0.0.5000 to 1.2.0.1000.
What type of vulnerability is CVE-2018-5410?
CVE-2018-5410 is classified as a stack-based buffer overflow vulnerability.
Can CVE-2018-5410 be exploited remotely?
Yes, an attacker can exploit CVE-2018-5410 by crafting a device handle and sending specially designed input to the vulnerable driver.