Collision in MiniFilter driver in Avast Software Avast Free Antivirus  before 25.9  on Windows allows a local attacker with administrative privileges to disable real-time protection and self-defense mechanisms.

Project Subscriptions

Vendors Products
Free Antivirus Subscribe
Microsoft Subscribe
Windows Subscribe
Advisories

No advisories yet.

Fixes

Solution

Upgrade to Avast 25.9 or newer


Workaround

No workaround given by the vendor.

History

Wed, 12 Nov 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 12 Nov 2025 13:00:00 +0000

Type Values Removed Values Added
First Time appeared Avast
Avast free Antivirus
Microsoft
Microsoft windows
Vendors & Products Avast
Avast free Antivirus
Microsoft
Microsoft windows

Tue, 11 Nov 2025 16:00:00 +0000

Type Values Removed Values Added
Description Collision in MiniFilter driver in Avast Software Avast Free Antivirus  before 25.9  on Windows allows a local attacker with administrative privileges to disable real-time protection and self-defense mechanisms.
Title Collision in minifilter driver of Avast Free Antivirus results in disabling of real-time protection
Weaknesses CWE-693
References
Metrics cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: NLOK

Published:

Updated: 2025-11-12T20:02:46.735Z

Reserved: 2025-09-24T07:22:13.596Z

Link: CVE-2025-10905

cve-icon Vulnrichment

Updated: 2025-11-12T14:54:01.137Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-11-11T16:15:37.967

Modified: 2025-11-12T16:19:34.210

Link: CVE-2025-10905

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-11-12T12:42:31Z

Weaknesses