CVE-2022-27534: Critical severity kaspersky anti-virus 2010 vulnerability
Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security with antivirus databases released before 12 March 2022 had a bug in a data parsing module that potentially allowed an attacker to execute arbitrary code. The fix was delivered automatically. Credits: Georgy Zaytsev (Positive Technologies).
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2022-27534.
Which Kaspersky products are affected by this vulnerability?
Kaspersky Anti-Virus, Kaspersky Endpoint Security, Kaspersky Internet Security, Kaspersky Security Cloud, Kaspersky Small Office Security, and Kaspersky Total Security are affected by this vulnerability.
What is the severity rating of CVE-2022-27534?
The severity rating of CVE-2022-27534 is critical with a score of 9.8.
How can an attacker exploit this vulnerability?
An attacker can potentially execute arbitrary code by exploiting this vulnerability.
How can I fix the vulnerability in Kaspersky products?
The fix for this vulnerability was delivered automatically, so make sure to update your Kaspersky Anti-Virus or Kaspersky Endpoint Security to the latest version.