Toll Free Support: 1800 419 0077
Advisory issued on 6th November 2017
Posted by Partner Support team on 15 January 2018 12:36 PM

Description

K7 Security Products before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.

CVE-2017-16551

CVE-2017-16553

CVE-2017-16555

CVE-2017-16557

List of affected products

K7 Consumer Products & K7 Endpoint Security Products

Fixed Versions

K7 Computing recommends that all customers upgrade to below specified version:

K7 Anti-Virus Plus (15.1.0308), K7 Anti-Virus Premium (15.1.0314), K7 Internet Security (15.1.0297), K7 Ultimate Security (15.1.0324), K7 Total Security (15.1.0324), K7Total Security Plus - (16.0.0131) & K7Endpoint-14.2.0137

Acknowledgments

We would like to extend our thanks to Paul Jeavons for reporting these bugs to K7 Computing Private Ltd.

(0 vote(s))
Helpful
Not helpful

Comments (0)