An issue was discovered in Avast Antivirus before 20. An Arbitrary Memory Address Overwrite vulnerability in the aswAvLog Log Library results in Denial of Service of the Avast Service (AvastSvc.exe).
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://forum.avast.com/index.php?topic=232420.0 | release notes vendor advisory |
https://forum.avast.com/index.php?topic=232423.0 | release notes vendor advisory |
https://github.com/umarfarook882/Avast_Multiple_Vulnerability_Disclosure/blob/master/README.md | third party advisory exploit |