CVE-2018-6473: Input Validation
In SUPERAntiSpyware Professional Trial 6.0.1254, the driver file (SASKUTIL.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9C402080.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-6473?
CVE-2018-6473 has been rated as a medium severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2018-6473?
To mitigate CVE-2018-6473, users should update to a patched version of SUPERAntiSpyware Professional after verifying vendor advisories.
What systems are affected by CVE-2018-6473?
CVE-2018-6473 affects SUPERAntiSpyware Professional version 6.0.1254.
What impact does CVE-2018-6473 have?
CVE-2018-6473 allows local users to cause a denial of service or potentially other unspecified impacts.
Is CVE-2018-6473 exploitative in nature?
Yes, CVE-2018-6473 can be exploited locally to trigger a BSOD by manipulating invalid input values.