First published: Mon Dec 05 2022(Updated: )
A vulnerability within the malware removal functionality of Avast and AVG Antivirus allowed an attacker with write access to the filesystem, to escalate his privileges in certain scenarios. The issue was fixed with Avast and AVG Antivirus version 22.10.
Credit: security@nortonlifelock.com security@nortonlifelock.com
Affected Software | Affected Version | How to fix |
---|---|---|
Avast Avast | >=20.5<=22.9 | |
Avast Avg Antivirus | >=20.5<=22.9 | |
>=20.5<=22.9 | ||
>=20.5<=22.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-4173 is a vulnerability within the malware removal functionality of Avast and AVG Antivirus that allowed an attacker with write access to the filesystem to escalate their privileges.
An attacker with write access to the filesystem can exploit CVE-2022-4173 to escalate their privileges.
CVE-2022-4173 has a severity rating of 8.8 (High).
Avast and AVG Antivirus versions up to 22.9 are affected by CVE-2022-4173.
CVE-2022-4173 was fixed with Avast and AVG Antivirus version 22.10.