CVE-2018-9136: Input Validation
Published Mar 30, 2018
·Updated
windrvr1260.sys in Jungo DriverWizard WinDriver 12.6.0 allows attackers to cause a denial of service (BSOD) via a crafted .exe file, a different vulnerability than CVE-2018-8821.
Affected Software
1 affected component
Jungo Windriver<12.7.0
Event History
Mar 30, 2018
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Data Sourced
via NVD·08:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2018-9136?
CVE-2018-9136 has been classified as a critical vulnerability due to its ability to cause a denial of service.
2
How do I fix CVE-2018-9136?
To mitigate CVE-2018-9136, update Jungo DriverWizard WinDriver to version 12.7.0 or later.
3
What type of denial of service is caused by CVE-2018-9136?
CVE-2018-9136 can lead to a blue screen of death (BSOD) on affected systems.
4
Which versions of Jungo WinDriver are affected by CVE-2018-9136?
Versions of Jungo WinDriver up to 12.6.0 are affected by CVE-2018-9136.
5
What causes the vulnerability CVE-2018-9136?
CVE-2018-9136 is triggered by executing a crafted .exe file that exploits the windrvr1260.sys driver.