Vulnerability Description
A vulnerability within the Avira network protection feature allowed an attacker with local execution rights to cause an overflow. This could corrupt the data on the heap and lead to a denial-of-service situation. Issue was fixed with Endpointprotection.exe version 1.0.2303.633
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Avira | Antivirus | < 1.0.2303.633 |
Related Weaknesses (CWE)
References
- https://support.norton.com/sp/static/external/tools/security-advisories.htmlThird Party Advisory
- https://support.norton.com/sp/static/external/tools/security-advisories.htmlThird Party Advisory
FAQ
What is CVE-2023-1900?
CVE-2023-1900 is a vulnerability with a CVSS score of 7.8 (HIGH). A vulnerability within the Avira network protection feature allowed an attacker with local execution rights to cause an overflow. This could corrupt the data on the heap and lead to a denial-of-servic...
How severe is CVE-2023-1900?
CVE-2023-1900 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-1900?
Check the references section above for vendor advisories and patch information. Affected products include: Avira Antivirus.