CVE-2016-10402: Buffer Overflow
Published Jul 27, 2017
·Updated
Avira Antivirus engine versions before 8.3.36.60 allow remote code execution as NT AUTHORITY\SYSTEM via a section header with a very large relative virtual address in a PE file, causing an integer overflow and heap-based buffer underflow.
Affected Software
1 affected component
Avira Antivirus Windows<=8.3.36.59
Event History
Jul 27, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-10402?
CVE-2016-10402 is considered critical because it allows remote code execution as NT AUTHORITY\SYSTEM.
2
How do I fix CVE-2016-10402?
To fix CVE-2016-10402, upgrade to Avira Antivirus version 8.3.36.60 or later.
3
Which versions of Avira Antivirus are affected by CVE-2016-10402?
CVE-2016-10402 affects Avira Antivirus versions prior to 8.3.36.60.
4
What type of vulnerability is CVE-2016-10402?
CVE-2016-10402 is a remote code execution vulnerability caused by an integer overflow and heap-based buffer underflow.
5
Who can exploit CVE-2016-10402?
CVE-2016-10402 can be exploited by an attacker who sends a specially crafted PE file to the vulnerable system.