PT-2013-6106 · Quick Heal · Quick Heal Antivirus Pro
Published
2013-12-20
·
Updated
2014-03-06
·
CVE-2013-6767
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Quick Heal AntiVirus Pro version 7.0.0.1
Description
The issue is a stack-based buffer overflow in the pepoly.dll component, which can be triggered by a long *.text value in a PE file. This can allow local users to execute arbitrary code or cause a denial of service, resulting in a process crash.
Recommendations
For Quick Heal AntiVirus Pro version 7.0.0.1, at the moment, there is no information about a newer version that contains a fix for this issue.
Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Quick Heal Antivirus Pro