PT-2017-2613 · Quick Heal · Quick Heal Antivirus Pro+2
Ashfaq Ansari
·
Published
2017-05-04
·
Updated
2021-09-13
·
CVE-2017-8774
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Quick Heal Internet Security version 10.1.0.316
Quick Heal Total Security version 10.1.0.316
Quick Heal AntiVirus Pro version 10.1.0.316
Description
The issue is caused by a buffer overflow in memory, which can be exploited by a remote attacker using a specially crafted Mach-O file. This can lead to memory corruption.
Recommendations
For Quick Heal Internet Security version 10.1.0.316, update to a version that fixes the buffer overflow issue.
For Quick Heal Total Security version 10.1.0.316, update to a version that fixes the buffer overflow issue.
For Quick Heal AntiVirus Pro version 10.1.0.316, update to a version that fixes the buffer overflow issue.
As a temporary workaround, consider restricting the use of Mach-O files until a patch is available.
Fix
Buffer Overflow
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Quick Heal Antivirus Pro
Quick Heal Internet Security
Quick Heal Total Security