First published: Thu Sep 07 2006(Updated: )
The start update window in update.exe in Avira AntiVir PersonalEdition Classic 7.0 build 151 allows local users to gain system privileges via a "Shatter" style attack on the (1) IParam parameter, and the (2) PBM_GETRANGE and (3) PBM_SETRANGE messages in an unspecified progress bar. NOTE: some details are obtained from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Avira AV Pack |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4619 is classified as a high-severity vulnerability that allows local users to gain system privileges.
To fix CVE-2006-4619, update to the latest version of Avira AntiVir PersonalEdition that addresses this vulnerability.
CVE-2006-4619 is vulnerable to a local privilege escalation attack utilizing a 'Shatter' style exploit.
CVE-2006-4619 affects Avira AntiVir PersonalEdition Classic version 7.0 build 151.
Local users with access to the affected system can exploit CVE-2006-4619 to gain elevated privileges.