CVE-2019-3970: Medium severity comodo antivirus vulnerability
Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to Arbitrary File Write due to Cavwp.exe handling of Comodo's Antivirus database. Cavwp.exe loads Comodo antivirus definition database in unsecured global section objects, allowing a local low privileged process to modify this data directly and change virus signatures.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-3970?
CVE-2019-3970 has a moderate severity rating due to its potential for arbitrary file write vulnerabilities.
How do I fix CVE-2019-3970?
To mitigate CVE-2019-3970, users should upgrade to Comodo Antivirus version 12.0.0.6811 or later.
What software is affected by CVE-2019-3970?
CVE-2019-3970 affects Comodo Antivirus versions up to and including 12.0.0.6810.
What is the nature of the vulnerability in CVE-2019-3970?
CVE-2019-3970 is an Arbitrary File Write vulnerability caused by insecure handling of the antivirus database by the Cavwp.exe process.
Can CVE-2019-3970 be exploited remotely?
No, CVE-2019-3970 requires local access for exploitation, as it allows a low privileged process to modify antivirus data.