This is a read-only archive. No new posts or registrations. Privacy Page
Discussion

Avast AV vuln - update available

1 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

FYI…

- http://www.cve.mitre.org/cgi-bin/cvename.c…e=CAN-2005-1719
# MISC: http://www.avast.com/eng/av4_revision_history.html
# SECTRACK: 1013991
# URL: http://securitytracker.com/id?1013991

- http://www.avast.com/eng/updates.html
Download links
* Update avast! 4.x VPS (released: 25.5.2005, version: 0521-2)
- http://www.avast.com/eng/update_avast_4_vps.html

* Update avast32 VPS (released: 25.5.2005, version: 7.70-9332)
- http://www.avast.com/eng/update_avast32_vps.html

:ph34r:
FYI…

- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-1770
Description Buffer overflow in the Aavmker4 device driver in Avast! Antivirus 4.6 and possibly other versions allows local users to cause a denial of service (system crash) and possibly execute arbitrary code via certain signals combined with crafted input.
References
* BUGTRAQ: 20050526 Alwil Software Avast Antivirus Device Driver Memory Overwrite Vulnerability
* URL: http://marc.theaimsgroup.com/?l=bugtraq&m;=…12494620031&w;=2
* MISC: http://pb.specialised.info/all/adv/avast-adv.txt
Phase Assigned (20050531)

- http://www.avast.com/eng/updates.html
"…We also recommend all v3 users to update their antivirus to the new avast! 4.
* Update avast! 4.x VPS (released: 1.6.2005, version: 0522-6)
* Update avast32 VPS (released: 1.6.2005, version: 7.70-9409)
* Update TMD (for avast32 3.0)
* iAVS for avast32 3.0
* avast! 7 for MS DOS …"

:ph34r: