
CVE-2023-1631 – JiangMin Antivirus IOCTL kvcore.sys 0x222010 null pointer dereference
https://notcve.org/view.php?id=CVE-2023-1631
25 Mar 2023 — A vulnerability, which was classified as problematic, was found in JiangMin Antivirus 16.2.2022.418. This affects the function 0x222010 in the library kvcore.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. • https://drive.google.com/file/d/1Div9mElTdsluLrU2etziLYqmXcqQFj1j/view • CWE-476: NULL Pointer Dereference •

CVE-2023-1630 – JiangMin Antivirus IOCTL kvcore.sys 0x222000 denial of service
https://notcve.org/view.php?id=CVE-2023-1630
25 Mar 2023 — A vulnerability, which was classified as problematic, has been found in JiangMin Antivirus 16.2.2022.418. Affected by this issue is the function 0x222000 in the library kvcore.sys of the component IOCTL Handler. The manipulation leads to denial of service. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. • https://drive.google.com/file/d/1fQFw8ayQUFzJM2_4V-ld8CN8gvisVoiu/view • CWE-404: Improper Resource Shutdown or Release •

CVE-2023-1629 – JiangMin Antivirus IOCTL kvcore.sys 0x222010 memory corruption
https://notcve.org/view.php?id=CVE-2023-1629
25 Mar 2023 — A vulnerability classified as critical was found in JiangMin Antivirus 16.2.2022.418. Affected by this vulnerability is the function 0x222010 in the library kvcore.sys of the component IOCTL Handler. The manipulation leads to memory corruption. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. • https://drive.google.com/file/d/1soMFXUAYkCttFDA_icry6q-irb2jdAxw/view • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2023-1628 – Jianming Antivirus IoControlCode kvcore.sys null pointer dereference
https://notcve.org/view.php?id=CVE-2023-1628
25 Mar 2023 — A vulnerability classified as problematic has been found in Jianming Antivirus 16.2.2022.418. Affected is an unknown function in the library kvcore.sys of the component IoControlCode Handler. The manipulation leads to null pointer dereference. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. • https://drive.google.com/file/d/1Div9mElTdsluLrU2etziLYqmXcqQFj1j/view • CWE-476: NULL Pointer Dereference •

CVE-2023-1627 – Jianming Antivirus IoControlCode kvcore.sys denial of service
https://notcve.org/view.php?id=CVE-2023-1627
25 Mar 2023 — A vulnerability was found in Jianming Antivirus 16.2.2022.418. It has been rated as problematic. This issue affects some unknown processing in the library kvcore.sys of the component IoControlCode Handler. The manipulation leads to denial of service. It is possible to launch the attack on the local host. • https://drive.google.com/file/d/1fQFw8ayQUFzJM2_4V-ld8CN8gvisVoiu/view • CWE-404: Improper Resource Shutdown or Release •

CVE-2023-1626 – Jianming Antivirus IoControlCode kvcore.sys memory corruption
https://notcve.org/view.php?id=CVE-2023-1626
25 Mar 2023 — A vulnerability was found in Jianming Antivirus 16.2.2022.418. It has been declared as critical. This vulnerability affects unknown code in the library kvcore.sys of the component IoControlCode Handler. The manipulation leads to memory corruption. Attacking locally is a requirement. • https://drive.google.com/file/d/1soMFXUAYkCttFDA_icry6q-irb2jdAxw/view • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2020-14955
https://notcve.org/view.php?id=CVE-2020-14955
26 Jun 2020 — In Jiangmin Antivirus 16.0.13.129, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x220440. En Jiangmin Antivirus versión 16.0.13.129, el archivo controlador (KVFG.sys) permite a usuarios locales causar una denegación de servicio (BSOD) o posiblemente tener otro impacto no especificado por no comprobar los valores de entrada desde IOCtl 0x220440 • https://github.com/intrigus-lgtm/CVE-2020-14955 • CWE-20: Improper Input Validation •

CVE-2018-6768
https://notcve.org/view.php?id=CVE-2018-6768
06 Feb 2018 — In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008090. En Jiangmin Antivirus 16.0.0.100, el archivo del controlador (KSysCall.sys) permite que usuarios locales provoquen una denegación de servicio (BSOD) o que, posiblemente, tengan otro impacto sin especificar debido a que no valida los valores de entrada desde IOCtl 0x9A008090. • https://github.com/ZhiyuanWang-Chengdu-Qihoo360/Jiangmin_Antivirus_POC/tree/master/KSysCall_9A008090 • CWE-20: Improper Input Validation •

CVE-2018-6769
https://notcve.org/view.php?id=CVE-2018-6769
06 Feb 2018 — In Jiangmin Antivirus 16.0.0.100, the driver file (KrnlCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x99008020. En Jiangmin Antivirus 16.0.0.100, el archivo del controlador (KrnlCall.sys) permite que usuarios locales provoquen una denegación de servicio (BSOD) o que, posiblemente, tengan otro impacto sin especificar debido a que no valida los valores de entrada desde IOCtl 0x99008020. • https://github.com/ZhiyuanWang-Chengdu-Qihoo360/Jiangmin_Antivirus_POC/tree/master/KrnlCall_99008020 • CWE-20: Improper Input Validation •

CVE-2018-6770
https://notcve.org/view.php?id=CVE-2018-6770
06 Feb 2018 — In Jiangmin Antivirus 16.0.0.100, the driver file (KrnlCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x99008210. En Jiangmin Antivirus 16.0.0.100, el archivo del controlador (KrnlCall.sys) permite que usuarios locales provoquen una denegación de servicio (BSOD) o que, posiblemente, tengan otro impacto sin especificar debido a que no valida los valores de entrada desde IOCtl 0x99008210. • https://github.com/ZhiyuanWang-Chengdu-Qihoo360/Jiangmin_Antivirus_POC/tree/master/KrnlCall_99008210 • CWE-20: Improper Input Validation •