A NULL pointer dereference bug in the function ObReferenceObjectByHandle in the Kingsoft Internet Security 9+ kernel driver KWatch3.sys allows local non-privileged users to crash the system via IOCTL 0x80030030.
References
Link | Resource |
---|---|
http://seclists.org/fulldisclosure/2018/Mar/78 | Mailing List Third Party Advisory |
Configurations
Information
Published : 2018-03-30 12:29
Updated : 2018-04-18 11:05
NVD link : CVE-2018-9151
Mitre link : CVE-2018-9151
JSON object : View
CWE
CWE-476
NULL Pointer Dereference
Products Affected
kingsoft
- internet_security_9_plus