Heap-based Buffer Overflow in Avast! Home and Professional Products
CVE-2009-4049

Currently unrated

Key Information:

Vendor

Avast

Vendor
CVE Published:
23 November 2009

Badges

👾 Exploit Exists🟡 Public PoC

What is CVE-2009-4049?

A vulnerability exists in aswRdr.sys, the TDI RDR driver for avast! Home and Professional versions, where a heap-based buffer overflow can be exploited by local users. By sending crafted arguments to IOCTL 0x80002024, an attacker could trigger memory corruption, leading to potential denial of service or escalation of privileges on the affected system.

Exploit Proof of Concept (PoC)

PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.

References

Timeline

  • 🟡

    Public PoC available

  • 👾

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.