Heap-based Buffer Overflow, Out-of-bounds Write vulnerability in Avast Antivirus on MacOS of a crafted Mach-O file may allow Local Execution of Code or Denial of Service of antivirus protection.
This issue affects Antivirus: from 15.7 before 3.9.2025.
Metrics
Affected Vendors & Products
References
History
Tue, 02 Dec 2025 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apple
Apple macos Avast Avast antivirus |
|
| Vendors & Products |
Apple
Apple macos Avast Avast antivirus |
Mon, 01 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 01 Dec 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Crafted Mach-O file may allow Remote Code Execution in Avast Antivirus 15.7 on MacOS |
Mon, 01 Dec 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Heap-based Buffer Overflow, Out-of-bounds Write vulnerability in Avast Antivirus on MacOS of a crafted Mach-O file may allow Local Execution of Code or Denial of Service of antivirus protection. This issue affects Antivirus: from 15.7 before 3.9.2025. | |
| Weaknesses | CWE-122 CWE-787 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: NLOK
Published: 2025-12-01T15:32:31.678Z
Updated: 2025-12-02T04:56:01.046Z
Reserved: 2025-09-08T10:10:40.173Z
Link: CVE-2025-10101
Updated: 2025-12-01T15:56:03.292Z
Status : Awaiting Analysis
Published: 2025-12-01T16:15:50.690
Modified: 2025-12-02T17:16:43.890
Link: CVE-2025-10101
No data.