CVE-2019-17100: Untrusted Search Path vulnerability in Bitdefender Total Security 2020 (VA-5895)
Published Jan 27, 2020
·Updated
An Untrusted Search Path vulnerability in bdserviceshost.exe as used in Bitdefender Total Security 2020 allows an attacker to execute arbitrary code. This issue does not affect: Bitdefender Total Security versions prior to 24.0.12.69.
Affected Software
1 affected component
Bitdefender Total Security 2020<24.0.12.69
Remediation
Information
Automatic update to Bitdefender Total Security version 24.0.12.69 mitigates the issue
Event History
Jan 27, 2020
CVE Published
via MITRE·01:55 PM
Data Sourced
via MITRE·01:55 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2019-17100?
CVE-2019-17100 is an Untrusted Search Path vulnerability in bdserviceshost.exe as used in Bitdefender Total Security 2020.
2
How does CVE-2019-17100 work?
CVE-2019-17100 allows an attacker to execute arbitrary code by exploiting an Untrusted Search Path vulnerability in bdserviceshost.exe.
3
Which software versions are affected by CVE-2019-17100?
Bitdefender Total Security 2020 versions prior to 24.0.12.69 are affected by CVE-2019-17100.
4
What is the severity of CVE-2019-17100?
CVE-2019-17100 has a severity rating of medium, with a score of 6.5.
5
How do I fix CVE-2019-17100?
To fix CVE-2019-17100, update Bitdefender Total Security 2020 to version 24.0.12.69 or later.