First published: Fri Feb 28 2020(Updated: )
The Avast AV parsing engine allows virus-detection bypass via a crafted ZIP archive. This affects versions before 12 definitions 200114-0 of Antivirus Pro, Antivirus Pro Plus, and Antivirus for Linux.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Avast Antivirus For Linux | <12.0 | |
Avast Antivirus Pro | <12.0 | |
Avast Antivirus Pro Plus | <12.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-9399 is a vulnerability that allows virus-detection bypass in Avast antivirus products.
Avast Antivirus Pro, Avast Antivirus Pro Plus, and Avast Antivirus For Linux versions before 12 definitions 200114-0 are affected.
CVE-2020-9399 has a severity rating of medium.
Upgrade Avast Antivirus Pro, Avast Antivirus Pro Plus, and Avast Antivirus For Linux to version 12 definitions 200114-0 or later.
The CWE ID of CVE-2020-9399 is 436.