CVE-2017-18019
K7 Total Security 15.1.0.305 - Device Driver Arbitrary Memory Read
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
In K7 Total Security before 15.1.0.305, user-controlled input to the K7Sentry device is not sufficiently sanitized: the user-controlled input can be used to compare an arbitrary memory address with a fixed value, which in turn can be used to read the contents of arbitrary memory. Similarly, the product crashes upon a \\.\K7Sentry DeviceIoControl call with an invalid kernel pointer.
En K7 Total Security en versiones anteriores a la 15.1.0.305, las entradas controladas por el usuario en el dispositivo K7Sentry no están suficientemente saneadas: las entradas controladas por el usuario se pueden utilizar para comparar una dirección de memoria arbitraria con un valor fijo, que a su vez se puede usar para leer contenidos de memoria arbitraria. De manera similar, el producto se cierra de manera inesperada después de que se realice una llamada \\.\K7Sentry DeviceIoControl con un puntero de kernel no válido.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2017-10-23 First Exploit
- 2018-01-03 CVE Reserved
- 2018-01-04 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-20: Improper Input Validation
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
https://blogs.securiteam.com/index.php/archives/3435 | Third Party Advisory |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/44046 | 2017-10-23 | |
https://github.com/SpiralBL0CK/CVE-2017-18019 | 2023-12-02 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
K7computing Search vendor "K7computing" | Total Security Search vendor "K7computing" for product "Total Security" | < 15.1.0.305 Search vendor "K7computing" for product "Total Security" and version " < 15.1.0.305" | - |
Affected
|