CVE-2017-10706: Buffer Overflow
When Antiy Antivirus Engine before 5.0.0.05171547 scans a special ZIP archive, it crashes with a stack-based buffer overflow because a fixed path length is used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-10706?
CVE-2017-10706 is classified as a high severity vulnerability due to the potential for exploiting a stack-based buffer overflow.
How do I fix CVE-2017-10706?
To fix CVE-2017-10706, update the Antiy Antivirus Engine to version 5.0.0.05171547 or later.
What types of systems are affected by CVE-2017-10706?
CVE-2017-10706 affects systems running versions of Antiy Antivirus Engine prior to 5.0.0.05171547.
What is a stack-based buffer overflow in CVE-2017-10706?
A stack-based buffer overflow in CVE-2017-10706 occurs when the Antiy Antivirus Engine processes a specially crafted ZIP archive that exceeds the allocated buffer length.
Are there any workarounds for CVE-2017-10706?
There are no known effective workarounds for CVE-2017-10706; the recommended action is to apply the software update.