5.5
CVSSv3

CVE-2020-9399

Published: 28/02/2020 Updated: 21/07/2021
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

The Avast AV parsing engine allows virus-detection bypass via a crafted ZIP archive. This affects versions prior to 12 definitions 200114-0 of Antivirus Pro, Antivirus Pro Plus, and Antivirus for Linux.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

avast antivirus for linux

avast antivirus pro

avast antivirus pro plus

Mailing Lists

________________________________________________________________________ From the low-hanging-fruit-department Avast Generic Malformed Archive Bypass (ZIP GFlag) ________________________________________________________________________ Release mode : Coordinated Disclosure Ref : [TZO-23-2020] - AVAST Gen ...