PT-2025-48493 · Avast · Avast Antivirus

Mike Zhang

·

Published

2025-12-01

·

Updated

2025-12-03

·

CVE-2025-8351

CVSS v3.1

9.0

Critical

VectorAV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Avast Antivirus versions 8.3.70.94 through 8.3.70.97
Description A heap-based buffer overflow and out-of-bounds read issue exists in Avast Antivirus on MacOS when scanning a malformed file. This can lead to local execution of code or a denial-of-service of the antivirus engine process. The issue is triggered when processing a specially crafted file. The vulnerability affects the antivirus engine.
Recommendations Update Avast Antivirus to version 8.3.70.98 or later.

Fix

DoS

RCE

Out of bounds Read

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-8351

Affected Products

Avast Antivirus