Show filters
595 Total Results
Displaying 291-300 of 595
Sort by:
Attacker Value
Unknown
CVE-2016-10402
Disclosure Date: July 27, 2017 (last updated November 26, 2024)
Avira Antivirus engine versions before 8.3.36.60 allow remote code execution as NT AUTHORITY\SYSTEM via a section header with a very large relative virtual address in a PE file, causing an integer overflow and heap-based buffer underflow.
0
Attacker Value
Unknown
CVE-2015-1438
Disclosure Date: July 25, 2017 (last updated November 26, 2024)
Heap-based buffer overflow in Panda Security Kernel Memory Access Driver 1.0.0.13 allows attackers to execute arbitrary code with kernel privileges via a crafted size input for allocated kernel paged pool and allocated non-paged pool buffers.
0
Attacker Value
Unknown
CVE-2017-10706
Disclosure Date: July 02, 2017 (last updated November 26, 2024)
When Antiy Antivirus Engine before 5.0.0.05171547 scans a special ZIP archive, it crashes with a stack-based buffer overflow because a fixed path length is used.
0
Attacker Value
Unknown
CVE-2017-10674
Disclosure Date: June 30, 2017 (last updated November 26, 2024)
Antiy Antivirus Engine 5.0.0.06281654 allows local users to cause a denial of service (BSOD) via a long third argument in a DeviceIoControl call.
0
Attacker Value
Unknown
CVE-2017-8776
Disclosure Date: May 04, 2017 (last updated November 26, 2024)
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 have approximately 165 PE files in the default installation that do not use ASLR/DEP protection mechanisms that provide sufficient defense against directed attacks against the product.
0
Attacker Value
Unknown
CVE-2017-8775
Disclosure Date: May 04, 2017 (last updated November 26, 2024)
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Memory Corruption while parsing a malformed Mach-O file.
0
Attacker Value
Unknown
CVE-2017-8774
Disclosure Date: May 04, 2017 (last updated November 26, 2024)
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Memory Corruption while parsing a malformed Mach-O file.
0
Attacker Value
Unknown
CVE-2017-8773
Disclosure Date: May 04, 2017 (last updated November 26, 2024)
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Out of Bounds Write on a Heap Buffer due to improper validation of dwCompressionSize of Microsoft WIM Header WIMHEADER_V1_PACKED. This vulnerability can be exploited to gain Remote Code Execution as well as Privilege Escalation.
0
Attacker Value
Unknown
CVE-2017-8339
Disclosure Date: April 30, 2017 (last updated November 26, 2024)
PSKMAD.sys in Panda Free Antivirus 18.0 allows local users to cause a denial of service (BSoD) via a crafted DeviceIoControl request to \\.\PSMEMDriver.
0
Attacker Value
Unknown
CVE-2017-8307
Disclosure Date: April 27, 2017 (last updated November 26, 2024)
In Avast Antivirus before v17, using the LPC interface API exposed by the AvastSVC.exe Windows service, it is possible to launch predefined binaries, or replace or delete arbitrary files. This vulnerability is exploitable by any unprivileged user when Avast Self-Defense is disabled. It is also exploitable in conjunction with CVE-2017-8308 when Avast Self-Defense is enabled. The vulnerability allows for Denial of Service attacks and hiding traces of a possible attack.
0