CVE-2020-10180: Critical severity eset cyber security for mac vulnerability
The ESET AV parsing engine allows virus-detection bypass via a crafted BZ2 Checksum field in an archive. This affects versions before 1294 of Smart Security Premium, Internet Security, NOD32 Antivirus, Cyber Security Pro (macOS), Cyber Security (macOS), Mobile Security for Android, Smart TV Security, and NOD32 Antivirus 4 for Linux Desktop.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-10180?
CVE-2020-10180 is a vulnerability in the ESET AV parsing engine that allows virus-detection bypass via a crafted BZ2 Checksum field in an archive.
Which versions of ESET software are affected by CVE-2020-10180?
Versions before 1294 of Smart Security Premium, Internet Security, NOD32 Antivirus, Cyber Security Pro (macOS), Cyber Security (macOS), Mobile Security for Android, and Smart TV Security are affected by CVE-2020-10180.
What is the severity of CVE-2020-10180?
The severity of CVE-2020-10180 is critical with a CVSS score of 9.8.
How can I fix the vulnerability described in CVE-2020-10180?
To fix the vulnerability, you should update your ESET software to version 1294 or later.
Is there any additional information available about CVE-2020-10180?
Yes, you can find more information about CVE-2020-10180 at the following reference: [https://blog.zoller.lu/p/tzo-11-2020-eset-generic-malformed.html](https://blog.zoller.lu/p/tzo-11-2020-eset-generic-malformed.html)