MidnightBSD

Advisories for jiangmin

CVE-2012-1424 MEDIUM

The TAR file parser in Antiy Labs AVL SDK 2.0.3.7, Quick Heal (aka Cat QuickHeal) 11.00, Jiangmin Antivirus 13.0.900, Norman Antivirus 6.06.12, PC Tools AntiVirus 7.0.3.5, and Sophos Anti-Virus 4.61.0 allows remote attackers to bypass malware detection via a POSIX TAR file with a \19\04\00\10 character sequence at a certain location. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
pc_tools pc_tools_antivirus 7.0.3.5
jiangmin jiangmin_antivirus 13.0.900
antiy avl_sdk 2.0.3.7
cat quick_heal 11.00
norman norman_antivirus_&_antispyware 6.06.12
sophos sophos_anti-virus 4.61.0
CVE-2012-1425 MEDIUM

The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware 5.1.0.1, Fortinet Antivirus 4.2.254.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, Kaspersky Anti-Virus 7.0.0.125, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, NOD32 Antivirus 5795, Norman Antivirus 6.06.12, PC Tools AntiVirus 7.0.3.5, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Trend Micro AntiVirus 9.120.0.1004, and Trend Micro HouseCall 9.120.0.1004 allows remote attackers to bypass malware detection via a POSIX TAR file with an initial \50\4B\03\04 character sequence. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
fortinet fortinet_antivirus 4.2.254.0
mcafee scan_engine 5.400.0.1158
trendmicro trend_micro_antivirus 9.120.0.1004
symantec endpoint_protection 11.0
eset nod32_antivirus 5795
cat quick_heal 11.00
norman norman_antivirus_&_antispyware 6.06.12
pc_tools pc_tools_antivirus 7.0.3.5
ikarus ikarus_virus_utilities_t3_command_line_scanner 1.1.97.0
jiangmin jiangmin_antivirus 13.0.900
avira antivir 7.11.1.163
antiy avl_sdk 2.0.3.7
emsisoft anti-malware 5.1.0.1
trendmicro housecall 9.120.0.1004
mcafee gateway 2010.1c
kaspersky kaspersky_anti-virus 7.0.0.125
CVE-2012-1443 MEDIUM

The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick Heal (aka Cat QuickHeal) 11.00, G Data AntiVirus 21, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Command Antivirus 5.2.11.5, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Emsisoft Anti-Malware 5.1.0.1, PC Tools AntiVirus 7.0.3.5, F-Prot Antivirus 4.6.2.117, VirusBuster 13.6.151.0, Fortinet Antivirus 4.2.254.0, Antiy Labs AVL SDK 2.0.3.7, K7 AntiVirus 9.77.3565, Trend Micro HouseCall 9.120.0.1004, Kaspersky Anti-Virus 7.0.0.125, Jiangmin Antivirus 13.0.900, Antimalware Engine 1.1.6402.0 in Microsoft Security Essentials 2.0, Sophos Anti-Virus 4.61.0, NOD32 Antivirus 5795, Avira AntiVir 7.11.1.163, Norman Antivirus 6.06.12, McAfee Anti-Virus Scanning Engine 5.400.0.1158, Panda Antivirus 10.0.2.7, McAfee Gateway (formerly Webwasher) 2010.1C, Trend Micro AntiVirus 9.120.0.1004, Comodo Antivirus 7424, Bitdefender 7.2, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.0, nProtect Anti-Virus 2011-01-17.01, AhnLab V3 Internet Security 2011.01.18.00, AVG Anti-Virus 10.0.0.1190, avast! Antivirus 4.8.1351.0 and 5.0.677.0, and VBA32 3.12.14.2 allows user-assisted remote attackers to bypass malware detection via a RAR file with an initial MZ character sequence. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different RAR parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
gdata-software g_data_antivirus 21
mcafee scan_engine 5.400.0.1158
aladdin esafe 7.0.17.0
comodo comodo_antivirus 7424
bitdefender bitdefender 7.2
virusbuster virusbuster 13.6.151.0
trendmicro trend_micro_antivirus 9.120.0.1004
microsoft security_essentials 2.0
authentium command_antivirus 5.2.11.5
alwil avast_antivirus 4.8.1351.0
symantec endpoint_protection 11.0
f-prot f-prot_antivirus 4.6.2.117
jiangmin jiangmin_antivirus 13.0.900
f-secure f-secure_anti-virus 9.0.16160.0
rising-global rising_antivirus 22.83.00.03
ahnlab v3_internet_security 2011.01.18.00
emsisoft anti-malware 5.1.0.1
pandasecurity panda_antivirus 10.0.2.7
mcafee gateway 2010.1c
anti-virus vba32 3.12.14.2
sophos sophos_anti-virus 4.61.0
kaspersky kaspersky_anti-virus 7.0.0.125
fortinet fortinet_antivirus 4.2.254.0
clamav clamav 0.96.4
nprotect nprotect_antivirus 2011-01-17.01
eset nod32_antivirus 5795
cat quick_heal 11.00
norman norman_antivirus_&_antispyware 6.06.12
pc_tools pc_tools_antivirus 7.0.3.5
alwil avast_antivirus 5.0.677.0
ikarus ikarus_virus_utilities_t3_command_line_scanner 1.1.97.0
avg avg_anti-virus 10.0.0.1190
avira antivir 7.11.1.163
antiy avl_sdk 2.0.3.7
trendmicro housecall 9.120.0.1004
k7computing antivirus 9.77.3565
CVE-2012-1456 MEDIUM

The TAR file parser in AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, Fortinet Antivirus 4.2.254.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, Kaspersky Anti-Virus 7.0.0.125, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, NOD32 Antivirus 5795, Norman Antivirus 6.06.12, Panda Antivirus 10.0.2.7, Rising Antivirus 22.83.00.03, Sophos Anti-Virus 4.61.0, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Trend Micro AntiVirus 9.120.0.1004, and Trend Micro HouseCall 9.120.0.1004 allows remote attackers to bypass malware detection via a TAR file with an appended ZIP file. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
fortinet fortinet_antivirus 4.2.254.0
mcafee scan_engine 5.400.0.1158
aladdin esafe 7.0.17.0
comodo comodo_antivirus 7424
trendmicro trend_micro_antivirus 9.120.0.1004
symantec endpoint_protection 11.0
f-prot f-prot_antivirus 4.6.2.117
eset nod32_antivirus 5795
cat quick_heal 11.00
norman norman_antivirus_&_antispyware 6.06.12
ikarus ikarus_virus_utilities_t3_command_line_scanner 1.1.97.0
avg avg_anti-virus 10.0.0.1190
jiangmin jiangmin_antivirus 13.0.900
rising-global rising_antivirus 22.83.00.03
emsisoft anti-malware 5.1.0.1
trendmicro housecall 9.120.0.1004
pandasecurity panda_antivirus 10.0.2.7
mcafee gateway 2010.1c
sophos sophos_anti-virus 4.61.0
kaspersky kaspersky_anti-virus 7.0.0.125
CVE-2012-1457 MEDIUM

The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8.1351.0 and 5.0.677.0, AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, ClamAV 0.96.4, Command Antivirus 5.2.11.5, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, G Data AntiVirus 21, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, K7 AntiVirus 9.77.3565, Kaspersky Anti-Virus 7.0.0.125, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, Antimalware Engine 1.1.6402.0 in Microsoft Security Essentials 2.0, NOD32 Antivirus 5795, Norman Antivirus 6.06.12, PC Tools AntiVirus 7.0.3.5, Rising Antivirus 22.83.00.03, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Trend Micro AntiVirus 9.120.0.1004, Trend Micro HouseCall 9.120.0.1004, VBA32 3.12.14.2, and VirusBuster 13.6.151.0 allows remote attackers to bypass malware detection via a TAR archive entry with a length field that exceeds the total TAR file size. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
gdata-software g_data_antivirus 21
mcafee scan_engine 5.400.0.1158
aladdin esafe 7.0.17.0
bitdefender bitdefender 7.2
virusbuster virusbuster 13.6.151.0
trendmicro trend_micro_antivirus 9.120.0.1004
microsoft security_essentials 2.0
authentium command_antivirus 5.2.11.5
alwil avast_antivirus 4.8.1351.0
symantec endpoint_protection 11.0
f-prot f-prot_antivirus 4.6.2.117
jiangmin jiangmin_antivirus 13.0.900
rising-global rising_antivirus 22.83.00.03
emsisoft anti-malware 5.1.0.1
mcafee gateway 2010.1c
anti-virus vba32 3.12.14.2
kaspersky kaspersky_anti-virus 7.0.0.125
clamav clamav 0.96.4
eset nod32_antivirus 5795
cat quick_heal 11.00
norman norman_antivirus_&_antispyware 6.06.12
pc_tools pc_tools_antivirus 7.0.3.5
alwil avast_antivirus 5.0.677.0
ikarus ikarus_virus_utilities_t3_command_line_scanner 1.1.97.0
avg avg_anti-virus 10.0.0.1190
avira antivir 7.11.1.163
antiy avl_sdk 2.0.3.7
trendmicro housecall 9.120.0.1004
k7computing antivirus 9.77.3565
CVE-2012-1459 MEDIUM

The TAR file parser in AhnLab V3 Internet Security 2011.01.18.00, Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8.1351.0 and 5.0.677.0, AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, ClamAV 0.96.4, Command Antivirus 5.2.11.5, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.1, F-Prot Antivirus 4.6.2.117, F-Secure Anti-Virus 9.0.16160.0, Fortinet Antivirus 4.2.254.0, G Data AntiVirus 21, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, K7 AntiVirus 9.77.3565, Kaspersky Anti-Virus 7.0.0.125, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, Antimalware Engine 1.1.6402.0 in Microsoft Security Essentials 2.0, NOD32 Antivirus 5795, Norman Antivirus 6.06.12, nProtect Anti-Virus 2011-01-17.01, Panda Antivirus 10.0.2.7, PC Tools AntiVirus 7.0.3.5, Rising Antivirus 22.83.00.03, Sophos Anti-Virus 4.61.0, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Trend Micro AntiVirus 9.120.0.1004, Trend Micro HouseCall 9.120.0.1004, VBA32 3.12.14.2, and VirusBuster 13.6.151.0 allows remote attackers to bypass malware detection via a TAR archive entry with a length field corresponding to that entire entry, plus part of the header of the next entry. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
gdata-software g_data_antivirus 21
mcafee scan_engine 5.400.0.1158
comodo comodo_antivirus 7424
bitdefender bitdefender 7.2
virusbuster virusbuster 13.6.151.0
trendmicro trend_micro_antivirus 9.120.0.1004
microsoft security_essentials 2.0
authentium command_antivirus 5.2.11.5
alwil avast_antivirus 4.8.1351.0
symantec endpoint_protection 11.0
f-prot f-prot_antivirus 4.6.2.117
jiangmin jiangmin_antivirus 13.0.900
f-secure f-secure_anti-virus 9.0.16160.0
rising-global rising_antivirus 22.83.00.03
ahnlab v3_internet_security 2011.01.18.00
emsisoft anti-malware 5.1.0.1
pandasecurity panda_antivirus 10.0.2.7
mcafee gateway 2010.1c
anti-virus vba32 3.12.14.2
sophos sophos_anti-virus 4.61.0
kaspersky kaspersky_anti-virus 7.0.0.125
fortinet fortinet_antivirus 4.2.254.0
clamav clamav 0.96.4
nprotect nprotect_antivirus 2011-01-17.01
eset nod32_antivirus 5795
cat quick_heal 11.00
norman norman_antivirus_&_antispyware 6.06.12
pc_tools pc_tools_antivirus 7.0.3.5
alwil avast_antivirus 5.0.677.0
ikarus ikarus_virus_utilities_t3_command_line_scanner 1.1.97.0
avg avg_anti-virus 10.0.0.1190
avira antivir 7.11.1.163
antiy avl_sdk 2.0.3.7
trendmicro housecall 9.120.0.1004
k7computing antivirus 9.77.3565
CVE-2012-1460 MEDIUM

The Gzip file parser in Antiy Labs AVL SDK 2.0.3.7, Quick Heal (aka Cat QuickHeal) 11.00, Command Antivirus 5.2.11.5, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, Jiangmin Antivirus 13.0.900, K7 AntiVirus 9.77.3565, and VBA32 3.12.14.2 allows remote attackers to bypass malware detection via a .tar.gz file with stray bytes at the end. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different Gzip parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
jiangmin jiangmin_antivirus 13.0.900
aladdin esafe 7.0.17.0
antiy avl_sdk 2.0.3.7
authentium command_antivirus 5.2.11.5
f-prot f-prot_antivirus 4.6.2.117
anti-virus vba32 3.12.14.2
cat quick_heal 11.00
k7computing antivirus 9.77.3565
CVE-2012-1461 MEDIUM

The Gzip file parser in AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Command Antivirus 5.2.11.5, Emsisoft Anti-Malware 5.1.0.1, F-Secure Anti-Virus 9.0.16160.0, Fortinet Antivirus 4.2.254.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, K7 AntiVirus 9.77.3565, Kaspersky Anti-Virus 7.0.0.125, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, NOD32 Antivirus 5795, Norman Antivirus 6.06.12, Rising Antivirus 22.83.00.03, Sophos Anti-Virus 4.61.0, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Trend Micro AntiVirus 9.120.0.1004, Trend Micro HouseCall 9.120.0.1004, and VBA32 3.12.14.2 allows remote attackers to bypass malware detection via a .tar.gz file with multiple compressed streams. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different Gzip parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
fortinet fortinet_antivirus 4.2.254.0
mcafee scan_engine 5.400.0.1158
bitdefender bitdefender 7.2
trendmicro trend_micro_antivirus 9.120.0.1004
authentium command_antivirus 5.2.11.5
symantec endpoint_protection 11.0
eset nod32_antivirus 5795
norman norman_antivirus_&_antispyware 6.06.12
ikarus ikarus_virus_utilities_t3_command_line_scanner 1.1.97.0
avg avg_anti-virus 10.0.0.1190
jiangmin jiangmin_antivirus 13.0.900
f-secure f-secure_anti-virus 9.0.16160.0
rising-global rising_antivirus 22.83.00.03
emsisoft anti-malware 5.1.0.1
trendmicro housecall 9.120.0.1004
mcafee gateway 2010.1c
anti-virus vba32 3.12.14.2
sophos sophos_anti-virus 4.61.0
k7computing antivirus 9.77.3565
kaspersky kaspersky_anti-virus 7.0.0.125
CVE-2012-1462 MEDIUM

The ZIP file parser in AhnLab V3 Internet Security 2011.01.18.00, AVG Anti-Virus 10.0.0.1190, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, Fortinet Antivirus 4.2.254.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, Kaspersky Anti-Virus 7.0.0.125, Norman Antivirus 6.06.12, Sophos Anti-Virus 4.61.0, and AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11 allows remote attackers to bypass malware detection via a ZIP file containing an invalid block of data at the beginning. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ZIP parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
ikarus ikarus_virus_utilities_t3_command_line_scanner 1.1.97.0
avg avg_anti-virus 10.0.0.1190
fortinet fortinet_antivirus 4.2.254.0
jiangmin jiangmin_antivirus 13.0.900
aladdin esafe 7.0.17.0
ahnlab v3_internet_security 2011.01.18.00
emsisoft anti-malware 5.1.0.1
symantec endpoint_protection 11.0
cat quick_heal 11.00
kaspersky kaspersky_anti-virus 7.0.0.125
CVE-2018-6768 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008090.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6769 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KrnlCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x99008020.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6770 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KrnlCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x99008210.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6771 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KrnlCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x99008224.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6772 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KrnlCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x99008208.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6773 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008084.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6774 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008088.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6775 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KrnlCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x990081C8.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6776 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A00813C.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6777 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x220400.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6778 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008268.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6779 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008240.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6780 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A0081E4.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6781 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008264.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6782 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A0081DC.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6783 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A00825C.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6784 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A00824C.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6785 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KSysCall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9A008254.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6786 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x220840.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6787 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x221808.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2018-6788 MEDIUM

In Jiangmin Antivirus 16.0.0.100, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x2208C0.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin antivirus 16.0.0.100
CVE-2020-14955 MEDIUM

In Jiangmin Antivirus 16.0.13.129, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x220440.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
nvd@nist.gov 5.5 MEDIUM CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H 1.8 3.6

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-20,

Products Affected

Vendor Product Version
jiangmin jiangmin_antivirus 16.0.13.129
CVE-2023-1626 MEDIUM

A vulnerability was found in Jianming Antivirus 16.2.2022.418. It has been declared as critical. This vulnerability affects unknown code in the library kvcore.sys of the component IoControlCode Handler. The manipulation leads to memory corruption. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-224008.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
nvd@nist.gov 7.8 HIGH CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H 1.8 5.9

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-119,CWE-119,

Products Affected

Vendor Product Version
jiangmin jiangmin_antivirus 16.2.2022.418
CVE-2023-1627 MEDIUM

A vulnerability was found in Jianming Antivirus 16.2.2022.418. It has been rated as problematic. This issue affects some unknown processing in the library kvcore.sys of the component IoControlCode Handler. The manipulation leads to denial of service. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. The identifier VDB-224009 was assigned to this vulnerability.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
nvd@nist.gov 5.5 MEDIUM CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H 1.8 3.6

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-404,CWE-404,

Products Affected

Vendor Product Version
jiangmin jiangmin_antivirus 16.2.2022.418
CVE-2023-1628 MEDIUM

A vulnerability classified as problematic has been found in Jianming Antivirus 16.2.2022.418. Affected is an unknown function in the library kvcore.sys of the component IoControlCode Handler. The manipulation leads to null pointer dereference. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. VDB-224010 is the identifier assigned to this vulnerability.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
nvd@nist.gov 5.5 MEDIUM CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H 1.8 3.6

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-476,CWE-476,

Products Affected

Vendor Product Version
jiangmin jiangmin_antivirus 16.2.2022.418
CVE-2023-1629 MEDIUM

A vulnerability classified as critical was found in JiangMin Antivirus 16.2.2022.418. Affected by this vulnerability is the function 0x222010 in the library kvcore.sys of the component IOCTL Handler. The manipulation leads to memory corruption. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-224011.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
nvd@nist.gov 7.8 HIGH CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H 1.8 5.9

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-119,CWE-119,

Products Affected

Vendor Product Version
jiangmin jiangmin_antivirus 16.2.2022.418
CVE-2023-1630 MEDIUM

A vulnerability, which was classified as problematic, has been found in JiangMin Antivirus 16.2.2022.418. Affected by this issue is the function 0x222000 in the library kvcore.sys of the component IOCTL Handler. The manipulation leads to denial of service. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-224012.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
nvd@nist.gov 5.5 MEDIUM CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H 1.8 3.6

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-404,CWE-404,

Products Affected

Vendor Product Version
jiangmin jiangmin_antivirus 16.2.2022.418
CVE-2023-1631 MEDIUM

A vulnerability, which was classified as problematic, was found in JiangMin Antivirus 16.2.2022.418. This affects the function 0x222010 in the library kvcore.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The identifier VDB-224013 was assigned to this vulnerability.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
nvd@nist.gov 5.5 MEDIUM CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H 1.8 3.6

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-476,CWE-476,

Products Affected

Vendor Product Version
jiangmin jiangmin_antivirus 16.2.2022.418