Avg Avast Antivirus vulnerabilities
5 known vulnerabilities affecting avg/avast_antivirus.
Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM4
Vulnerabilities
Page 1 of 1
CVE-2024-9484MEDIUMCVSS 5.5≥ 24/Sep/2024, < < 240924002024-10-04
CVE-2024-9484 [MEDIUM] CWE-476 CVE-2024-9484: An null-pointer-derefrence in the engine module in AVG/Avast Antivirus signature <24092400 released
An null-pointer-derefrence in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS allows a malformed xar file to crash the application during file processing.
cvelistv5nvd
CVE-2024-9483MEDIUMCVSS 5.5≥ 24/Sep/2024, < < 240924002024-10-04
CVE-2024-9483 [MEDIUM] CWE-476 CVE-2024-9483: A null-pointer-dereference in the signature verification module in AVG/Avast Antivirus signature <24
A null-pointer-dereference in the signature verification module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS may allow a malformed xar file to crash the application during processing.
cvelistv5nvd
CVE-2024-9481MEDIUMCVSS 5.5≥ 24/Sep/2024, < < 240924002024-10-04
CVE-2024-9481 [MEDIUM] CWE-787 CVE-2024-9481: An out-of-bounds write in the engine module in AVG/Avast Antivirus signature <24092400 released on 2
An out-of-bounds write in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS allows a malformed eml file to crash the application during file processing.
cvelistv5nvd
CVE-2024-9482MEDIUMCVSS 5.5≥ 24/Sep/2024, < < 240924002024-10-04
CVE-2024-9482 [MEDIUM] CWE-787 CVE-2024-9482: An out-of-bounds write in the engine module in AVG/Avast Antivirus signature <24092400 released on 2
An out-of-bounds write in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS allows a malformed Mach-O file to crash the application during file processing.
cvelistv5nvd
CVE-2024-5803HIGHCVSS 7.5v<24.12024-10-03
CVE-2024-5803 [HIGH] CWE-367 CVE-2024-5803: The AVGUI.exe of AVG/Avast Antivirus before versions before 24.1 can allow a local attacker to escal
The AVGUI.exe of AVG/Avast Antivirus before versions before 24.1 can allow a local attacker to escalate privileges via an COM hijack in a time-of-check to time-of-use (TOCTOU) when self protection is disabled.
cvelistv5nvd