CVE-2018-6788: Input Validation
Published Feb 6, 2018
·Updated
In Jiangmin Antivirus 16.0.0.100, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x2208C0.
Affected Software
1 affected component
Jiangmin Antivirus=16.0.0.100
Event History
Feb 6, 2018
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Data Sourced
via NVD·11:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-6788?
CVE-2018-6788 has a CVSS score indicating it is a moderate severity vulnerability that can lead to denial of service.
2
How do I fix CVE-2018-6788?
To fix CVE-2018-6788, update Jiangmin Antivirus to the latest version that addresses this vulnerability.
3
What is the impact of CVE-2018-6788?
CVE-2018-6788 allows local users to trigger a denial of service, potentially leading to a blue screen of death (BSOD).
4
Who is affected by CVE-2018-6788?
CVE-2018-6788 specifically affects users of Jiangmin Antivirus version 16.0.0.100.
5
Is CVE-2018-6788 remotely exploitable?
CVE-2018-6788 is not remotely exploitable as it requires local user access to trigger the vulnerability.