7.8
CVSSv3

CVE-2016-3986

Published: 12/04/2016 Updated: 18/04/2016
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Avast allows remote malicious users to cause a denial of service (memory corruption) and possibly execute arbitrary code via a crafted PE file, related to authenticode parsing.

Vulnerable Product Search on Vulmon Subscribe to Product

avast avast -

Exploits

Source: codegooglecom/p/google-security-research/issues/detail?id=668 The attached PE file causes memory corruption in Avast, it looks related to authenticode parsing (474c0c): Access violation - code c0000005 (first chance) First chance exceptions are reported before any exception handling This exception may be expected and handled ...