CVE-2022-25949

The kernel mode driver kwatch3 of KINGSOFT Internet Security 9 Plus Version 2010.06.23.247 fails to properly handle crafted inputs, leading to stack-based buffer overflow.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:kingsoft:internet_security_9_plus:2010.06.23.247:*:*:*:*:*:*:*

History

23 Mar 2022, 19:14

Type Values Removed Values Added
References (CONFIRM) https://support.kingsoft.jp/support-info/weakness.html - (CONFIRM) https://support.kingsoft.jp/support-info/weakness.html - Vendor Advisory
References (JVN) https://jvn.jp/en/jp/JVN21234459/ - (JVN) https://jvn.jp/en/jp/JVN21234459/ - Third Party Advisory
First Time Kingsoft internet Security 9 Plus
Kingsoft
CVSS v2 : unknown
v3 : unknown
v2 : 7.2
v3 : 7.8
CWE CWE-787
CPE cpe:2.3:a:kingsoft:internet_security_9_plus:2010.06.23.247:*:*:*:*:*:*:*

17 Mar 2022, 18:26

Type Values Removed Values Added
New CVE

Information

Published : 2022-03-17 18:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-25949

Mitre link : CVE-2022-25949

CVE.ORG link : CVE-2022-25949


JSON object : View

Products Affected

kingsoft

  • internet_security_9_plus
CWE
CWE-787

Out-of-bounds Write

CWE-121

Stack-based Buffer Overflow