Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HDefault status
affected
Any version before 8.3.70.56
affected
Description
Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed Windows MSI file may allow Local Execution of Code or Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.56.
Problem types
Product status
Any version before 8.3.70.56
Credits
Mike Zhang, an independent security researcher
References
www.gendigital.com/us/en/contact-us/security-advisories/