Solutions

3rd Advisory issued on 6th November 2017

Administrator Jul-9th, 2018 6:05 129 0

Description

K7 Security Products before 15.1.0.53 allows local users to gain privileges by sending a specific IOCTL after setting the memory in a particular way.

CVE-2017-16551

CVE-2017-16553

CVE-2017-16555

CVE-2017-16557

List of affected products

K7 Consumer Products & K7 Endpoint Security Products

Fixed Versions

K7 Computing recommends that all customers upgrade to below specified version:

K7 Anti-Virus Plus (15.1.0308), K7 Anti-Virus Premium (15.1.0314), K7 Internet Security (15.1.0297), K7 Ultimate Security (15.1.0324), K7 Total Security (15.1.0324), K7Total Security Plus - (16.0.0131) & K7Endpoint-14.2.0137

Acknowledgments

We would like to extend our thanks to Paul Jeavons for reporting these bugs to K7 Computing Private Ltd.

Vote

Was this article helpful?
129 out of 260 found this helpful