CVE-2017-6008: Sophos Hitmanpro

High severity, CVSS 7.8. EPSS: 1.9% chance of exploitation in the next 30 days.

A kernel pool overflow in the driver hitmanpro37.sys in Sophos SurfRight HitmanPro before 3.7.20 Build 286 (included in the HitmanPro.Alert solution and Sophos Clean) allows local users to escalate privileges via a malformed IOCTL call.

Affected products

  • Sophos Hitmanpro: up to and including 3.7.20

Published 2017-09-13. Last modified 2026-06-17.