MidnightBSD

Advisories for avira

CVE-2005-2957 HIGH

Stack-based buffer overflow in AVIRA Desktop for Windows 1.00.00.68 with AVPACK32.DLL 6.31.0.3, when archive scanning is enabled, allows remote attackers to execute arbitrary code via a long filename in an ACE archive.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avira desktop 1.00.00.68
CVE-2005-3219 MEDIUM

Multiple interpretation error in unspecified versions of Avira Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avira antivir_personal *
CVE-2005-3224 MEDIUM

Multiple interpretation error in unspecified versions of AntiVir Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avira antivir_personal *
CVE-2006-1274 HIGH

Classic Planer in AntiVir PersonalEdition Classic 7 does not drop privileges before executing external programs, which allows local users to gain privileges via notepad.exe, which is used to display scan reports.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avira antivir_personal *
avira antivir_personal 7
CVE-2006-4619 MEDIUM

The start update window in update.exe in Avira AntiVir PersonalEdition Classic 7.0 build 151 allows local users to gain system privileges via a "Shatter" style attack on the (1) IParam parameter, and the (2) PBM_GETRANGE and (3) PBM_SETRANGE messages in an unspecified progress bar. NOTE: some details are obtained from third party information.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avira antivir_personal *
CVE-2007-1671 HIGH

avpack32.dll before 7.3.0.6 in Avira AntiVir allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a previous file.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avira antivir_personal *
CVE-2007-1673 HIGH

unzoo.c, as used in multiple products including AMaViS 2.4.1 and earlier, allows remote attackers to cause a denial of service (infinite loop) via a ZOO archive with a direntry structure that points to a previous file.

CVSS 2.0

Severity: HIGH

Problem Type: CWE-399,

Products Affected

Vendor Product Version
avast avast_antivirus 4.7.652
avast avast_antivirus_professional 4.0
avast avast_antivirus_home 4.7.1043
avast avast_antivirus_professional 4.6.652
avira antivir 7.04.00.23
avast avast_antivirus_professional 4.6.665
avast avast_antivirus_professional 4.7.1043
avast avast_antivirus_home 4.6.691
avast avast_antivirus_home 4.0
avast avast_antivirus_home 4.6.652
avast avast_antivirus_professional 4.6.603
rahul_dhesi zoo *
avast avast_antivirus_professional 4.6.691
avira antivir_personal *
unzoo unzoo 4.4
avast avast_antivirus_professional 4.7.844
barracuda_networks barracuda_spam_firewall model_200
avast avast_antivirus_professional 4.7.869
avast avast_antivirus_home 4.7.844
avast avast_antivirus_professional 4.7.1098
avast avast_antivirus *
panda panda_antivirus_and_firewall 2007
avast avast_antivirus_home 4.7.827
barracuda_networks barracuda_spam_firewall model_600
avast avast_antivirus_home 4.6
barracuda_networks barracuda_spam_firewall model_800
avira antivir *
avira antivir 6.35.00.00
avast avast_antivirus_home 4.7.869
barracuda_networks barracuda_spam_firewall model_500
barracuda_networks barracuda_spam_firewall *
barracuda_networks barracuda_spam_firewall model_300
winace winace *
barracuda_networks barracuda_spam_firewall model_900
avast avast_antivirus_professional 4.7.827
barracuda_networks barracuda_spam_firewall model_400
avast avast_antivirus 4.7.700
avast avast_antivirus 4.6.394
picozip picozip *
avast avast_antivirus_home 4.6.665
panda panda_antivirus 2007
amavis amavis *
avira antivir_personal 7
barracuda_networks barracuda_spam_firewall model_100
avast avast_antivirus_home 4.6.655
avast avast_antivirus_professional 4.6
avast avast_antivirus_home 4.7.1098
CVE-2007-2972 HIGH

The file parsing engine in Avira Antivir Antivirus before 7.04.00.24 allows remote attackers to cause a denial of service (application crash) via a crafted UPX compressed file, which triggers a divide-by-zero error.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avira antivir *
avira av_pack *
CVE-2007-2973 HIGH

Avira Antivir Antivirus before 7.03.00.09 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a malformed TAR archive.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avira antivir *
avira av_pack *
CVE-2007-2974 HIGH

Buffer overflow in the file parsing engine in Avira Antivir Antivirus before 7.03.00.09 allows remote attackers to execute arbitrary code via a crafted LZH archive file, resulting from an "integer cast around."

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avira antivir *
avira av_pack *
CVE-2008-6962 HIGH

Avira AntiVir Premium, Premium Security Suite, AntiVir Professional, and AntiVir Personal - FREE allows local users to execute arbitrary code via a crafted IOCTL request that overwrites a kernel pointer.

CVSS 2.0

Severity: HIGH

Problem Type: CWE-20,

Products Affected

Vendor Product Version
avira antivir 6.35.00.00
avira antivir_personal *
avira antivir_security_suite -
avira antivir_professional *
avira antivir -
CVE-2009-2761 HIGH

Unquoted Windows search path vulnerability in the scheduler (sched.exe) in Avira AntiVir, AntiVir Premium, Premium Security Suite, and AntiVir Professional might allow local users to gain privileges via a malicious antivir.exe file in the "C:\Program Files\avira\" directory.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avira antivir_security_suite -
avira antivir *
avira antivir -
CVE-2010-5153 MEDIUM

Race condition in Avira Premium Security Suite 10.0.0.536 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute dangerous code that would otherwise be blocked by a handler but not blocked by signature-based malware detection, via certain user-space memory changes during hook-handler execution, aka an argument-switch attack or a KHOBE attack. NOTE: this issue is disputed by some third parties because it is a flaw in a protection mechanism for situations where a crafted program has already begun to execute

CVSS 3.x

Source Score Severity Vector Exploitability Impact
134c704f-9b21-4f2e-91b3-4a467353bcc0 5.3 MEDIUM CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L 1.8 3.4

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-362,CWE-94,

Products Affected

Vendor Product Version
avira premium_security_suite 10.0.0.536
CVE-2012-1425 MEDIUM

The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, Quick Heal (aka Cat QuickHeal) 11.00, Emsisoft Anti-Malware 5.1.0.1, Fortinet Antivirus 4.2.254.0, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, Kaspersky Anti-Virus 7.0.0.125, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, NOD32 Antivirus 5795, Norman Antivirus 6.06.12, PC Tools AntiVirus 7.0.3.5, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Trend Micro AntiVirus 9.120.0.1004, and Trend Micro HouseCall 9.120.0.1004 allows remote attackers to bypass malware detection via a POSIX TAR file with an initial \50\4B\03\04 character sequence. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
mcafee scan_engine 5.400.0.1158
cat quick_heal 11.00
pc_tools pc_tools_antivirus 7.0.3.5
symantec endpoint_protection 11.0
emsisoft anti-malware 5.1.0.1
trendmicro housecall 9.120.0.1004
kaspersky kaspersky_anti-virus 7.0.0.125
antiy avl_sdk 2.0.3.7
norman norman_antivirus_&_antispyware 6.06.12
trendmicro trend_micro_antivirus 9.120.0.1004
mcafee gateway 2010.1c
avira antivir 7.11.1.163
eset nod32_antivirus 5795
ikarus ikarus_virus_utilities_t3_command_line_scanner 1.1.97.0
fortinet fortinet_antivirus 4.2.254.0
jiangmin jiangmin_antivirus 13.0.900
CVE-2012-1443 MEDIUM

The RAR file parser in ClamAV 0.96.4, Rising Antivirus 22.83.00.03, Quick Heal (aka Cat QuickHeal) 11.00, G Data AntiVirus 21, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Command Antivirus 5.2.11.5, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Emsisoft Anti-Malware 5.1.0.1, PC Tools AntiVirus 7.0.3.5, F-Prot Antivirus 4.6.2.117, VirusBuster 13.6.151.0, Fortinet Antivirus 4.2.254.0, Antiy Labs AVL SDK 2.0.3.7, K7 AntiVirus 9.77.3565, Trend Micro HouseCall 9.120.0.1004, Kaspersky Anti-Virus 7.0.0.125, Jiangmin Antivirus 13.0.900, Antimalware Engine 1.1.6402.0 in Microsoft Security Essentials 2.0, Sophos Anti-Virus 4.61.0, NOD32 Antivirus 5795, Avira AntiVir 7.11.1.163, Norman Antivirus 6.06.12, McAfee Anti-Virus Scanning Engine 5.400.0.1158, Panda Antivirus 10.0.2.7, McAfee Gateway (formerly Webwasher) 2010.1C, Trend Micro AntiVirus 9.120.0.1004, Comodo Antivirus 7424, Bitdefender 7.2, eSafe 7.0.17.0, F-Secure Anti-Virus 9.0.16160.0, nProtect Anti-Virus 2011-01-17.01, AhnLab V3 Internet Security 2011.01.18.00, AVG Anti-Virus 10.0.0.1190, avast! Antivirus 4.8.1351.0 and 5.0.677.0, and VBA32 3.12.14.2 allows user-assisted remote attackers to bypass malware detection via a RAR file with an initial MZ character sequence. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different RAR parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
pc_tools pc_tools_antivirus 7.0.3.5
emsisoft anti-malware 5.1.0.1
bitdefender bitdefender 7.2
alwil avast_antivirus 4.8.1351.0
kaspersky kaspersky_anti-virus 7.0.0.125
nprotect nprotect_antivirus 2011-01-17.01
antiy avl_sdk 2.0.3.7
microsoft security_essentials 2.0
norman norman_antivirus_&_antispyware 6.06.12
gdata-software g_data_antivirus 21
anti-virus vba32 3.12.14.2
f-prot f-prot_antivirus 4.6.2.117
pandasecurity panda_antivirus 10.0.2.7
jiangmin jiangmin_antivirus 13.0.900
sophos sophos_anti-virus 4.61.0
ahnlab v3_internet_security 2011.01.18.00
comodo comodo_antivirus 7424
cat quick_heal 11.00
mcafee scan_engine 5.400.0.1158
symantec endpoint_protection 11.0
k7computing antivirus 9.77.3565
authentium command_antivirus 5.2.11.5
avg avg_anti-virus 10.0.0.1190
trendmicro housecall 9.120.0.1004
trendmicro trend_micro_antivirus 9.120.0.1004
mcafee gateway 2010.1c
rising-global rising_antivirus 22.83.00.03
avira antivir 7.11.1.163
alwil avast_antivirus 5.0.677.0
eset nod32_antivirus 5795
ikarus ikarus_virus_utilities_t3_command_line_scanner 1.1.97.0
fortinet fortinet_antivirus 4.2.254.0
virusbuster virusbuster 13.6.151.0
f-secure f-secure_anti-virus 9.0.16160.0
clamav clamav 0.96.4
aladdin esafe 7.0.17.0
CVE-2012-1457 MEDIUM

The TAR file parser in Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8.1351.0 and 5.0.677.0, AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, ClamAV 0.96.4, Command Antivirus 5.2.11.5, Emsisoft Anti-Malware 5.1.0.1, eSafe 7.0.17.0, F-Prot Antivirus 4.6.2.117, G Data AntiVirus 21, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, K7 AntiVirus 9.77.3565, Kaspersky Anti-Virus 7.0.0.125, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, Antimalware Engine 1.1.6402.0 in Microsoft Security Essentials 2.0, NOD32 Antivirus 5795, Norman Antivirus 6.06.12, PC Tools AntiVirus 7.0.3.5, Rising Antivirus 22.83.00.03, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Trend Micro AntiVirus 9.120.0.1004, Trend Micro HouseCall 9.120.0.1004, VBA32 3.12.14.2, and VirusBuster 13.6.151.0 allows remote attackers to bypass malware detection via a TAR archive entry with a length field that exceeds the total TAR file size. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
pc_tools pc_tools_antivirus 7.0.3.5
emsisoft anti-malware 5.1.0.1
bitdefender bitdefender 7.2
alwil avast_antivirus 4.8.1351.0
kaspersky kaspersky_anti-virus 7.0.0.125
microsoft security_essentials 2.0
antiy avl_sdk 2.0.3.7
norman norman_antivirus_&_antispyware 6.06.12
gdata-software g_data_antivirus 21
anti-virus vba32 3.12.14.2
f-prot f-prot_antivirus 4.6.2.117
jiangmin jiangmin_antivirus 13.0.900
cat quick_heal 11.00
mcafee scan_engine 5.400.0.1158
symantec endpoint_protection 11.0
k7computing antivirus 9.77.3565
authentium command_antivirus 5.2.11.5
trendmicro housecall 9.120.0.1004
avg avg_anti-virus 10.0.0.1190
trendmicro trend_micro_antivirus 9.120.0.1004
mcafee gateway 2010.1c
avira antivir 7.11.1.163
rising-global rising_antivirus 22.83.00.03
alwil avast_antivirus 5.0.677.0
eset nod32_antivirus 5795
ikarus ikarus_virus_utilities_t3_command_line_scanner 1.1.97.0
virusbuster virusbuster 13.6.151.0
clamav clamav 0.96.4
aladdin esafe 7.0.17.0
CVE-2012-1459 MEDIUM

The TAR file parser in AhnLab V3 Internet Security 2011.01.18.00, Avira AntiVir 7.11.1.163, Antiy Labs AVL SDK 2.0.3.7, avast! Antivirus 4.8.1351.0 and 5.0.677.0, AVG Anti-Virus 10.0.0.1190, Bitdefender 7.2, Quick Heal (aka Cat QuickHeal) 11.00, ClamAV 0.96.4, Command Antivirus 5.2.11.5, Comodo Antivirus 7424, Emsisoft Anti-Malware 5.1.0.1, F-Prot Antivirus 4.6.2.117, F-Secure Anti-Virus 9.0.16160.0, Fortinet Antivirus 4.2.254.0, G Data AntiVirus 21, Ikarus Virus Utilities T3 Command Line Scanner 1.1.97.0, Jiangmin Antivirus 13.0.900, K7 AntiVirus 9.77.3565, Kaspersky Anti-Virus 7.0.0.125, McAfee Anti-Virus Scanning Engine 5.400.0.1158, McAfee Gateway (formerly Webwasher) 2010.1C, Antimalware Engine 1.1.6402.0 in Microsoft Security Essentials 2.0, NOD32 Antivirus 5795, Norman Antivirus 6.06.12, nProtect Anti-Virus 2011-01-17.01, Panda Antivirus 10.0.2.7, PC Tools AntiVirus 7.0.3.5, Rising Antivirus 22.83.00.03, Sophos Anti-Virus 4.61.0, AVEngine 20101.3.0.103 in Symantec Endpoint Protection 11, Trend Micro AntiVirus 9.120.0.1004, Trend Micro HouseCall 9.120.0.1004, VBA32 3.12.14.2, and VirusBuster 13.6.151.0 allows remote attackers to bypass malware detection via a TAR archive entry with a length field corresponding to that entire entry, plus part of the header of the next entry. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different TAR parser implementations.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-264,

Products Affected

Vendor Product Version
pc_tools pc_tools_antivirus 7.0.3.5
emsisoft anti-malware 5.1.0.1
bitdefender bitdefender 7.2
alwil avast_antivirus 4.8.1351.0
kaspersky kaspersky_anti-virus 7.0.0.125
nprotect nprotect_antivirus 2011-01-17.01
antiy avl_sdk 2.0.3.7
microsoft security_essentials 2.0
norman norman_antivirus_&_antispyware 6.06.12
gdata-software g_data_antivirus 21
anti-virus vba32 3.12.14.2
f-prot f-prot_antivirus 4.6.2.117
pandasecurity panda_antivirus 10.0.2.7
jiangmin jiangmin_antivirus 13.0.900
sophos sophos_anti-virus 4.61.0
ahnlab v3_internet_security 2011.01.18.00
comodo comodo_antivirus 7424
mcafee scan_engine 5.400.0.1158
cat quick_heal 11.00
k7computing antivirus 9.77.3565
symantec endpoint_protection 11.0
authentium command_antivirus 5.2.11.5
avg avg_anti-virus 10.0.0.1190
trendmicro housecall 9.120.0.1004
trendmicro trend_micro_antivirus 9.120.0.1004
mcafee gateway 2010.1c
rising-global rising_antivirus 22.83.00.03
avira antivir 7.11.1.163
alwil avast_antivirus 5.0.677.0
eset nod32_antivirus 5795
ikarus ikarus_virus_utilities_t3_command_line_scanner 1.1.97.0
fortinet fortinet_antivirus 4.2.254.0
virusbuster virusbuster 13.6.151.0
f-secure f-secure_anti-virus 9.0.16160.0
clamav clamav 0.96.4
CVE-2014-5576 MEDIUM

The Avira Secure Backup (aka com.avira.avirabackup) application 1.2.3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-310,

Products Affected

Vendor Product Version
avira avira_secure_backup 1.2.3
CVE-2015-7303 HIGH

Use-after-free vulnerability in the Update Manager service in Avira Management Console allows remote attackers to execute arbitrary code via a large header.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
avira management_console *
CVE-2015-7732 MEDIUM

The Avira Mobile Security app before 1.5.11 for iOS sends sensitive login information in cleartext.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-200,

Products Affected

Vendor Product Version
avira avira_mobile_security 1.5.7
CVE-2016-10402 HIGH

Avira Antivirus engine versions before 8.3.36.60 allow remote code execution as NT AUTHORITY\SYSTEM via a section header with a very large relative virtual address in a PE file, causing an integer overflow and heap-based buffer underflow.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
nvd@nist.gov 7.8 HIGH CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H 1.8 5.9

CVSS 2.0

Severity: HIGH

Problem Type: CWE-119,

Products Affected

Vendor Product Version
avira antivirus *
CVE-2017-6417 HIGH

Code injection vulnerability in Avira Total Security Suite 15.0 (and earlier), Optimization Suite 15.0 (and earlier), Internet Security Suite 15.0 (and earlier), and Free Security Suite 15.0 (and earlier) allows a local attacker to bypass a self-protection mechanism, inject arbitrary code, and take full control of any Avira process via a "DoubleAgent" attack. One perspective on this issue is that (1) these products do not use the Protected Processes feature, and therefore an attacker can enter an arbitrary Application Verifier Provider DLL under Image File Execution Options in the registry; (2) the self-protection mechanism is intended to block all local processes (regardless of privileges) from modifying Image File Execution Options for these products; and (3) this mechanism can be bypassed by an attacker who temporarily renames Image File Execution Options during the attack.

CVSS 2.0

Severity: HIGH

Problem Type: CWE-427,

Products Affected

Vendor Product Version
avira total_security_suite *
avira internet_security_suite *
avira free_security_suite *
avira optimization_suite *