Description
Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed Windows MSI file may allow Local Execution of Code or Denial-of-Service of the antivirus engine process.
This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.56.
This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.56.
No analysis available yet.
Remediation
Vendor Solution
Upgrade to Avira scan engine build 8.3.70.56 or any later engine release. Builds at or above 8.3.70.56 include the fix.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Fri, 12 Jun 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Heap buffer out-of-bounds read vulnerability in Avira Antivirus engine when scanning a malformed Windows MSI file may allow Local Execution of Code or Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.56. | |
| Title | Avira antivirus engine heap buffer OOB read when scanning a malformed Windows MSI file | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: GEN
Published:
Updated: 2026-06-12T22:13:13.533Z
Reserved: 2025-07-02T11:59:07.847Z
Link: CVE-2025-7017
No data.
Status : Received
Published: 2026-06-12T22:16:49.343
Modified: 2026-06-12T22:16:49.343
Link: CVE-2025-7017
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-125
Out-of-bounds Read