CVE-2018-9001: Input Validation
In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitorwin7x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c402000.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-9001?
CVE-2018-9001 is a vulnerability in Advanced SystemCare Ultimate 11.0.1.58 where the driver file (Monitor_win7_x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c402000.
How severe is CVE-2018-9001?
CVE-2018-9001 has a severity rating of 7.8 (high).
Which software versions are affected by CVE-2018-9001?
Advanced SystemCare Ultimate 11.0.1.58 is affected by CVE-2018-9001.
How can CVE-2018-9001 be exploited?
CVE-2018-9001 can be exploited by local users through IOCtl 0x9c402000, causing a denial of service or other unspecified impacts.
Is there a fix available for CVE-2018-9001?
Currently, there is no fix available for CVE-2018-9001. It is recommended to update to a newer version of Advanced SystemCare Ultimate when it becomes available.