Show filters
595 Total Results
Displaying 291-300 of 595
Sort by:
Attacker Value
Unknown

CVE-2016-10402

Disclosure Date: July 27, 2017 (last updated November 26, 2024)
Avira Antivirus engine versions before 8.3.36.60 allow remote code execution as NT AUTHORITY\SYSTEM via a section header with a very large relative virtual address in a PE file, causing an integer overflow and heap-based buffer underflow.
Attacker Value
Unknown

CVE-2015-1438

Disclosure Date: July 25, 2017 (last updated November 26, 2024)
Heap-based buffer overflow in Panda Security Kernel Memory Access Driver 1.0.0.13 allows attackers to execute arbitrary code with kernel privileges via a crafted size input for allocated kernel paged pool and allocated non-paged pool buffers.
0
Attacker Value
Unknown

CVE-2017-10706

Disclosure Date: July 02, 2017 (last updated November 26, 2024)
When Antiy Antivirus Engine before 5.0.0.05171547 scans a special ZIP archive, it crashes with a stack-based buffer overflow because a fixed path length is used.
0
Attacker Value
Unknown

CVE-2017-10674

Disclosure Date: June 30, 2017 (last updated November 26, 2024)
Antiy Antivirus Engine 5.0.0.06281654 allows local users to cause a denial of service (BSOD) via a long third argument in a DeviceIoControl call.
0
Attacker Value
Unknown

CVE-2017-8776

Disclosure Date: May 04, 2017 (last updated November 26, 2024)
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 have approximately 165 PE files in the default installation that do not use ASLR/DEP protection mechanisms that provide sufficient defense against directed attacks against the product.
Attacker Value
Unknown

CVE-2017-8775

Disclosure Date: May 04, 2017 (last updated November 26, 2024)
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Memory Corruption while parsing a malformed Mach-O file.
Attacker Value
Unknown

CVE-2017-8774

Disclosure Date: May 04, 2017 (last updated November 26, 2024)
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Memory Corruption while parsing a malformed Mach-O file.
Attacker Value
Unknown

CVE-2017-8773

Disclosure Date: May 04, 2017 (last updated November 26, 2024)
Quick Heal Internet Security 10.1.0.316, Quick Heal Total Security 10.1.0.316, and Quick Heal AntiVirus Pro 10.1.0.316 are vulnerable to Out of Bounds Write on a Heap Buffer due to improper validation of dwCompressionSize of Microsoft WIM Header WIMHEADER_V1_PACKED. This vulnerability can be exploited to gain Remote Code Execution as well as Privilege Escalation.
Attacker Value
Unknown

CVE-2017-8339

Disclosure Date: April 30, 2017 (last updated November 26, 2024)
PSKMAD.sys in Panda Free Antivirus 18.0 allows local users to cause a denial of service (BSoD) via a crafted DeviceIoControl request to \\.\PSMEMDriver.
Attacker Value
Unknown

CVE-2017-8307

Disclosure Date: April 27, 2017 (last updated November 26, 2024)
In Avast Antivirus before v17, using the LPC interface API exposed by the AvastSVC.exe Windows service, it is possible to launch predefined binaries, or replace or delete arbitrary files. This vulnerability is exploitable by any unprivileged user when Avast Self-Defense is disabled. It is also exploitable in conjunction with CVE-2017-8308 when Avast Self-Defense is enabled. The vulnerability allows for Denial of Service attacks and hiding traces of a possible attack.
0