PT-2017-11443 · Antiy · Antiy Antivirus Engine
Maodou
·
Published
2017-07-02
·
Updated
2017-07-07
·
CVE-2017-10706
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Antiy Antivirus Engine versions prior to 5.0.0.05171547
Description
The issue occurs when the Antiy Antivirus Engine scans a specially crafted ZIP archive, leading to a stack-based buffer overflow due to the use of a fixed path length. This results in the engine crashing.
Recommendations
For versions prior to 5.0.0.05171547, update to version 5.0.0.05171547 or later to resolve the issue.
Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Antiy Antivirus Engine