ZDI-CAN-15197: Bitdefender Total Security Link Following Denial-of-Service Vulnerability
This vulnerability allows local attackers to create a denial-of-service condition on affected installations of Bitdefender Total Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the Bitdefender Virus Shield. By creating a symbolic link, an attacker can abuse the service to delete files. An attacker can leverage this vulnerability to create a denial-of-service condition on the system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-15197?
The severity of ZDI-CAN-15197 is classified as high due to its potential to create a denial-of-service condition.
How do I fix ZDI-CAN-15197?
To fix ZDI-CAN-15197, ensure that your Bitdefender Total Security is updated to the latest version released by Bitdefender.
Who can exploit ZDI-CAN-15197?
ZDI-CAN-15197 can be exploited by local attackers who can execute low-privileged code on the target system.
What are the impacts of ZDI-CAN-15197?
The impact of ZDI-CAN-15197 is a denial-of-service condition that can affect the functionality of Bitdefender Total Security.
Is ZDI-CAN-15197 specific to any version of Bitdefender?
Yes, ZDI-CAN-15197 affects multiple versions of Bitdefender Total Security.