Sandbox component in Avast Antivirus prior to 20.4 has an insecure permission which could be abused by local user to control the outcome of scans, and therefore evade detection or delete arbitrary system files.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-12-27T12:29:43

Updated: 2021-12-27T12:29:43

Reserved: 2021-12-20T00:00:00


Link: CVE-2021-45335

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-12-27T14:15:07.580

Modified: 2022-01-07T17:29:55.097


Link: CVE-2021-45335

JSON object: View

cve-icon Redhat Information

No data.

CWE