Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HDefault status
affected
Any version before 8.3.27.12
affected
Description
Heap buffer out-of-bounds write vulnerability in Avira Antivirus engine when scanning a malformed POSIX tar archive may allow Local Execution of Code or Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.27.12.
Problem types
Product status
Any version before 8.3.27.12
Credits
Mike Zhang, an independent security researcher
References
www.gendigital.com/us/en/contact-us/security-advisories/