PT-2017-2613 · Quick Heal · Quick Heal Antivirus Pro+2

Ashfaq Ansari

·

Published

2017-05-04

·

Updated

2021-09-13

·

CVE-2017-8774

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Quick Heal Internet Security version 10.1.0.316 Quick Heal Total Security version 10.1.0.316 Quick Heal AntiVirus Pro version 10.1.0.316
Description The issue is caused by a buffer overflow in memory, which can be exploited by a remote attacker using a specially crafted Mach-O file. This can lead to memory corruption.
Recommendations For Quick Heal Internet Security version 10.1.0.316, update to a version that fixes the buffer overflow issue. For Quick Heal Total Security version 10.1.0.316, update to a version that fixes the buffer overflow issue. For Quick Heal AntiVirus Pro version 10.1.0.316, update to a version that fixes the buffer overflow issue. As a temporary workaround, consider restricting the use of Mach-O files until a patch is available.

Fix

Buffer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-01831
CVE-2017-8774

Affected Products

Quick Heal Antivirus Pro
Quick Heal Internet Security
Quick Heal Total Security