CVE-2020-20118: Buffer Overflow
Buffer Overflow vulnerability in Avast AntiVirus before v.19.7 allows a local attacker to cause a denial of service via a crafted request to the aswSnx.sys driver.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2020-20118?
CVE-2020-20118 is a buffer overflow vulnerability in Avast AntiVirus before version 19.7 that allows a local attacker to cause a denial of service through a crafted request to the aswSnx.sys driver.
How severe is CVE-2020-20118?
CVE-2020-20118 has a severity rating of medium, with a severity value of 5.5.
Which software version is affected by CVE-2020-20118?
Avast AntiVirus versions up to but excluding 19.7 are affected by CVE-2020-20118.
How can the buffer overflow vulnerability in Avast AntiVirus be fixed?
To fix the buffer overflow vulnerability in Avast AntiVirus, users should update to version 19.7 or a newer version provided by Avast.
Are there any references for CVE-2020-20118?
Yes, you can find more information about CVE-2020-20118 at the following links: http://avast.com, https://gitlab.com/yongchuank/avast-aswsnx-ioctl-82ac0060-oob-write