NULL Pointer Dereference vulnerability in Avast Antivirus on MacOS, Avast Anitvirus on Linux when scanning a malformed Windows PE file causes the antivirus process to crash.This issue affects Antivirus: 16.0.0; Anitvirus: 3.0.3.
Advisories

No advisories yet.

Fixes

Solution

Fixed in virus definitions 25021804 17/Mar/2025


Workaround

No workaround given by the vendor.

History

Mon, 01 Dec 2025 21:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Avast
Avast antivirus
Linux
Linux linux
Vendors & Products Apple
Apple macos
Avast
Avast antivirus
Linux
Linux linux

Mon, 01 Dec 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 01 Dec 2025 16:45:00 +0000

Type Values Removed Values Added
Description NULL Pointer Dereference vulnerability in Avast Antivirus on MacOS, Avast Anitvirus on Linux when scanning a malformed Windows PE file causes the antivirus process to crash.This issue affects Antivirus: 16.0.0; Anitvirus: 3.0.3.
Title Null pointer dereference in Avast Antivirus on macOS (16.0.0) or Linux (3.0.3)
Weaknesses CWE-476
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: NLOK

Published:

Updated: 2025-12-01T17:08:55.389Z

Reserved: 2025-07-02T07:47:01.607Z

Link: CVE-2025-7007

cve-icon Vulnrichment

Updated: 2025-12-01T17:07:43.807Z

cve-icon NVD

Status : Received

Published: 2025-12-01T17:15:50.733

Modified: 2025-12-01T17:15:50.733

Link: CVE-2025-7007

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-12-01T21:27:21Z