CVE-2018-6785: Input Validation
Published Feb 6, 2018
·Updated
In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008254.
Affected Software
1 affected component
Jiangmin Antivirus=16.0.0.100
Event History
Feb 6, 2018
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Data Sourced
via NVD·11:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-6785?
CVE-2018-6785 has a medium severity rating due to its potential to cause a denial of service.
2
How do I fix CVE-2018-6785?
To fix CVE-2018-6785, update the Jiangmin Antivirus software to the latest version that addresses this vulnerability.
3
Who is affected by CVE-2018-6785?
CVE-2018-6785 affects local users of Jiangmin Antivirus version 16.0.0.100.
4
What systems are vulnerable to CVE-2018-6785?
Vulnerable systems are those running Jiangmin Antivirus version 16.0.0.100.
5
What type of vulnerability is CVE-2018-6785?
CVE-2018-6785 is a local denial of service vulnerability due to inadequate input validation.