CVE-2024-9481: Out of Bounds write on scan of malformed eml file may crash the application
Published Oct 4, 2024
·Updated
An out-of-bounds write in the engine module in AVG/Avast Antivirus signature <24092400 released on 24/Sep/2024 on MacOS allows a malformed eml file to crash the application during file processing.
Affected Software
2 affected components
Avast Antivirus Macos<24092400
AVG Antivirus Macos<24092400
Remediation
Information
Upgrade to the latest version of virus definintions.
Event History
Oct 4, 2024
CVE Published
via MITRE·12:15 PM
Data Sourced
via MITRE·12:15 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-9481?
CVE-2024-9481 is classified as a high severity vulnerability due to its potential to crash the Avast and AVG Antivirus applications.
2
How do I fix CVE-2024-9481?
To fix CVE-2024-9481, users should update their Avast or AVG Antivirus software to the latest version beyond signature 24092400.
3
What platforms are affected by CVE-2024-9481?
CVE-2024-9481 affects Avast and AVG Antivirus for MacOS prior to version 24092400.
4
What kind of attack does CVE-2024-9481 enable?
CVE-2024-9481 enables an out-of-bounds write condition that can be exploited using a malformed eml file.
5
Who is impacted by CVE-2024-9481?
Users of Avast or AVG Antivirus on MacOS version 24092400 or earlier are impacted by CVE-2024-9481.