vendor:
Avira Antivirus
by:
Anonymous
N/A
CVSS
HIGH
Heap Underflow
122
CWE
Product Name: Avira Antivirus
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE: cpe:2.3:a:avira:antivirus:*:*:*:*:*:*:*:*
Platforms Tested: Windows
Heap Underflow Vulnerability in Avira Antivirus
The Avira Antivirus engine is vulnerable to a heap underflow vulnerability when parsing section headers of PE files. If a section header has a very large relative virtual address, Avira will wrap calculating the offset into a heap buffer, allowing an attacker to write controlled data to it. This vulnerability can be exploited for remote code execution as NT AUTHORITYSYSTEM.
Mitigation:
To mitigate this vulnerability, it is recommended to update Avira Antivirus to the latest version available. Additionally, users should exercise caution when opening or executing files from untrusted sources.