A NULL pointer dereference bug in the function ObReferenceObjectByHandle in the Kingsoft Internet Security 9+ kernel driver KWatch3.sys allows local non-privileged users to crash the system via IOCTL 0x80030030.
References
Link | Resource |
---|---|
http://seclists.org/fulldisclosure/2018/Mar/78 | Mailing List Third Party Advisory |
Configurations
History
No history.
Information
Published : 2018-03-30 19:29
Updated : 2018-04-18 18:05
NVD link : CVE-2018-9151
Mitre link : CVE-2018-9151
CVE.ORG link : CVE-2018-9151
JSON object : View
Products Affected
kingsoft
- internet_security_9_plus
CWE
CWE-476
NULL Pointer Dereference