CVE-2019-18644: Medium severity totaldefense antivirus vulnerability
Published Oct 30, 2019
·Updated
The malware scan function in Total Defense Anti-virus 11.5.2.28 is vulnerable to a TOCTOU bug; consequently, symbolic link attacks allow privileged files to be deleted.
Affected Software
1 affected component
TotalDefense Anti-virus=11.5.2.28
Event History
Oct 30, 2019
CVE Published
via MITRE·11:07 PM
Data Sourced
via MITRE·11:07 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-18644?
CVE-2019-18644 has a medium severity rating due to its ability to facilitate privileged file deletions.
2
How do I fix CVE-2019-18644?
To fix CVE-2019-18644, update Total Defense Anti-virus to a version later than 11.5.2.28 to mitigate the TOCTOU vulnerability.
3
What type of attack does CVE-2019-18644 involve?
CVE-2019-18644 involves a symbolic link attack that exploits a TOCTOU bug in the malware scan function.
4
What files are affected by CVE-2019-18644?
CVE-2019-18644 can lead to the deletion of privileged files due to the vulnerability in Total Defense Anti-virus.
5
Which version of Total Defense Anti-virus is vulnerable to CVE-2019-18644?
Only Total Defense Anti-virus version 11.5.2.28 is known to be vulnerable to CVE-2019-18644.