CVE-2022-26523: Medium severity Avast Windows Anti Rootkit driver (aswArPot.sys) vulnerability
The socket connection handler in aswArPot.sys in the Avast and AVG Windows Anti Rootkit driver before 22.1 allows local attackers to execute arbitrary code in kernel mode or cause a denial of service (memory corruption and OS crash) due to a double fetch vulnerability at aswArPot+0xbb94.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-26523?
CVE-2022-26523 is considered a critical vulnerability due to its potential for arbitrary code execution and denial of service in kernel mode.
How do I fix CVE-2022-26523?
To fix CVE-2022-26523, update the Avast or AVG Windows Anti Rootkit driver to the latest version beyond 22.1.
Who is affected by CVE-2022-26523?
CVE-2022-26523 affects users of Avast and AVG Windows Anti Rootkit drivers prior to version 22.1.
What types of exploits are possible with CVE-2022-26523?
Exploiting CVE-2022-26523 can allow local attackers to execute arbitrary code or cause a system crash.
What is the nature of the vulnerability in CVE-2022-26523?
CVE-2022-26523 is a double fetch vulnerability found in the socket connection handler of the aswArPot.sys driver.