In Jingyun Antivirus v2.4.2.39, the driver file (hookbody.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x00221482.
References
Link | Resource |
---|---|
https://www.cnvd.org.cn/flaw/show/CNVD-2018-19268 | Third Party Advisory |
https://github.com/bsauce/poc/tree/master/jingyun_antivirus_00221482 | Third Party Advisory |
Configurations
Information
Published : 2020-11-23 13:15
Updated : 2020-11-25 06:47
NVD link : CVE-2018-16719
Mitre link : CVE-2018-16719
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
v-secure
- jingyun_antivirus