CVE-2018-6777: Input Validation
In Jiangmin Antivirus 16.0.0.100, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x220400.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-6777?
CVE-2018-6777 is classified as a medium severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2018-6777?
To mitigate CVE-2018-6777, users should update Jiangmin Antivirus to the latest version that addresses this vulnerability.
What type of vulnerability is CVE-2018-6777?
CVE-2018-6777 is a local denial-of-service vulnerability caused by input validation issues in the KVFG.sys driver.
Who is affected by CVE-2018-6777?
Local users of Jiangmin Antivirus version 16.0.0.100 are affected by CVE-2018-6777.
What can exploit CVE-2018-6777?
An attacker with local access can exploit CVE-2018-6777 to trigger a BSOD by providing invalid input to IOCtl 0x220400.