First published: Mon Nov 23 2009(Updated: )
Heap-based buffer overflow in aswRdr.sys (aka the TDI RDR driver) in avast! Home and Professional 4.8.1356.0 allows local users to cause a denial of service (memory corruption) or possibly gain privileges via crafted arguments to IOCTL 0x80002024.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Avast Pro Antivirus | =4.8.1356.0 | |
Avast Antivirus | =4.8.1356.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4049 has a medium severity rating due to its potential for denial of service and local privilege escalation.
To fix CVE-2009-4049, update to a version of Avast that is later than 4.8.1356.0 that addresses this vulnerability.
CVE-2009-4049 affects Avast! Home and Professional versions specifically at 4.8.1356.0.
CVE-2009-4049 is a heap-based buffer overflow vulnerability that can lead to memory corruption.
CVE-2009-4049 requires local access to the system to exploit, as it involves crafted arguments to a local IOCTL.