
CVE-2023-1631 – JiangMin Antivirus IOCTL kvcore.sys 0x222010 null pointer dereference
https://notcve.org/view.php?id=CVE-2023-1631
25 Mar 2023 — A vulnerability, which was classified as problematic, was found in JiangMin Antivirus 16.2.2022.418. This affects the function 0x222010 in the library kvcore.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. • https://drive.google.com/file/d/1Div9mElTdsluLrU2etziLYqmXcqQFj1j/view • CWE-476: NULL Pointer Dereference •

CVE-2023-1630 – JiangMin Antivirus IOCTL kvcore.sys 0x222000 denial of service
https://notcve.org/view.php?id=CVE-2023-1630
25 Mar 2023 — A vulnerability, which was classified as problematic, has been found in JiangMin Antivirus 16.2.2022.418. Affected by this issue is the function 0x222000 in the library kvcore.sys of the component IOCTL Handler. The manipulation leads to denial of service. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. • https://drive.google.com/file/d/1fQFw8ayQUFzJM2_4V-ld8CN8gvisVoiu/view • CWE-404: Improper Resource Shutdown or Release •

CVE-2023-1629 – JiangMin Antivirus IOCTL kvcore.sys 0x222010 memory corruption
https://notcve.org/view.php?id=CVE-2023-1629
25 Mar 2023 — A vulnerability classified as critical was found in JiangMin Antivirus 16.2.2022.418. Affected by this vulnerability is the function 0x222010 in the library kvcore.sys of the component IOCTL Handler. The manipulation leads to memory corruption. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. • https://drive.google.com/file/d/1soMFXUAYkCttFDA_icry6q-irb2jdAxw/view • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2023-1628 – Jianming Antivirus IoControlCode kvcore.sys null pointer dereference
https://notcve.org/view.php?id=CVE-2023-1628
25 Mar 2023 — A vulnerability classified as problematic has been found in Jianming Antivirus 16.2.2022.418. Affected is an unknown function in the library kvcore.sys of the component IoControlCode Handler. The manipulation leads to null pointer dereference. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. • https://drive.google.com/file/d/1Div9mElTdsluLrU2etziLYqmXcqQFj1j/view • CWE-476: NULL Pointer Dereference •

CVE-2023-1627 – Jianming Antivirus IoControlCode kvcore.sys denial of service
https://notcve.org/view.php?id=CVE-2023-1627
25 Mar 2023 — A vulnerability was found in Jianming Antivirus 16.2.2022.418. It has been rated as problematic. This issue affects some unknown processing in the library kvcore.sys of the component IoControlCode Handler. The manipulation leads to denial of service. It is possible to launch the attack on the local host. • https://drive.google.com/file/d/1fQFw8ayQUFzJM2_4V-ld8CN8gvisVoiu/view • CWE-404: Improper Resource Shutdown or Release •

CVE-2023-1626 – Jianming Antivirus IoControlCode kvcore.sys memory corruption
https://notcve.org/view.php?id=CVE-2023-1626
25 Mar 2023 — A vulnerability was found in Jianming Antivirus 16.2.2022.418. It has been declared as critical. This vulnerability affects unknown code in the library kvcore.sys of the component IoControlCode Handler. The manipulation leads to memory corruption. Attacking locally is a requirement. • https://drive.google.com/file/d/1soMFXUAYkCttFDA_icry6q-irb2jdAxw/view • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2020-14955
https://notcve.org/view.php?id=CVE-2020-14955
26 Jun 2020 — In Jiangmin Antivirus 16.0.13.129, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x220440. En Jiangmin Antivirus versión 16.0.13.129, el archivo controlador (KVFG.sys) permite a usuarios locales causar una denegación de servicio (BSOD) o posiblemente tener otro impacto no especificado por no comprobar los valores de entrada desde IOCtl 0x220440 • https://github.com/intrigus-lgtm/CVE-2020-14955 • CWE-20: Improper Input Validation •

CVE-2012-1424
https://notcve.org/view.php?id=CVE-2012-1424
21 Mar 2012 — The TAR file parser in Antiy Labs AVL SDK 2.0.3.7, Quick Heal (aka Cat QuickHeal) 11.00, Jiangmin Antivirus 13.0.900, Norman Antivirus 6.06.12, PC Tools AntiVirus 7.0.3.5, and Sophos Anti-Virus 4.61.0 allows remote attackers to bypass malware detection via a POSIX TAR file with a \19\04\00\10 character sequence at a certain location. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations. E... • http://osvdb.org/80390 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2012-1425
https://notcve.org/view.php?id=CVE-2012-1425
21 Mar 2012 — The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware 5.1.0.1, Fortinet Antivirus 4.2.254.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, Kaspersky Anti-Virus 7.0.0.125, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, NOD32 Antivirus 5795, Norman Antivirus 6.06.12, PC Tools AntiVirus 7.0.3.5, AVEngine 20101.3.0.103 in Symantec Endpoint Prote... • http://osvdb.org/80389 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2012-1443
https://notcve.org/view.php?id=CVE-2012-1443
21 Mar 2012 — The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick Heal (aka Cat QuickHeal) 11.00, G Data AntiVirus 21, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Command Antivirus 5.2.11.5, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Emsisoft Anti-Malware 5.1.0.1, PC Tools AntiVirus 7.0.3.5, F-Prot Antivirus 4.6.2.117, VirusBuster 13.6.151.0, Fortinet Antivirus 4.2.254.0, Antiy Labs AVL SDK 2.0.3.7, K7 AntiVirus 9.77.3565, Trend Micro HouseCall 9.120.0.1004, Kaspersky An... • http://osvdb.org/80454 • CWE-264: Permissions, Privileges, and Access Controls •