CVE-2015-8620

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
13/04/2016
Last modified:
12/04/2025

Description

Heap-based buffer overflow in the Avast virtualization driver (aswSnx.sys) in Avast Internet Security, Pro Antivirus, Premier, and Free Antivirus before 11.1.2253 allows local users to gain privileges via a Unicode file path in an IOCTL request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:avast:avast_free_antivirus:*:*:*:*:*:*:*:* 11.1.2245 (including)
cpe:2.3:a:avast:avast_internet_security:*:*:*:*:*:*:*:* 11.1.2245 (including)
cpe:2.3:a:avast:avast_premier:*:*:*:*:*:*:*:* 11.1.2245 (including)
cpe:2.3:a:avast:avast_pro_antivirus:*:*:*:*:*:*:*:* 11.1.2245 (including)