CVE-2018-6474: Input Validation
In SUPERAntiSpyware Professional Trial 6.0.1254, the driver file (SASKUTIL.SYS) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9C402148.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-6474?
CVE-2018-6474 has a severity rating of medium to high due to its potential to cause a denial of service through a BSOD.
How do I fix CVE-2018-6474?
To mitigate CVE-2018-6474, users should update to the latest version of SUPERAntiSpyware that addresses the vulnerability.
What specific component is affected by CVE-2018-6474?
CVE-2018-6474 specifically affects the driver file SASKUTIL.SYS in SUPERAntiSpyware Professional Trial version 6.0.1254.
Can CVE-2018-6474 be exploited remotely?
CVE-2018-6474 is a local vulnerability, meaning it requires local user access to the affected system to exploit.
What impact can CVE-2018-6474 cause?
CVE-2018-6474 can lead to a denial of service, causing the system to crash or become unresponsive.