Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Avast! Antivirus Local Insecure Permissions Vulnerability

The avast! Antivirus product is prone to a local insecure-permissions vulnerability. This issue is due to the application incorrectly resetting the permissions on critical files during its periodic update process.

A local, unprivileged attacker can exploit this issue to replace critical driver files with malicious executables. This may facilitate a complete compromise of the affected computer.

This issue affects avast! 4.x versions. Other versions may also be vulnerable.







 

Privacy Statement
Copyright 2009, SecurityFocus