CVE-2025-4134

Lack of file validation in do_update_vps in Avast Business Antivirus for Linux 4.5 on Linux allows local user to spoof or tamper with the update file via an unverified file write.
Configurations

No configuration.

History

28 May 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-28 14:15

Updated : 2025-05-28 15:01


NVD link : CVE-2025-4134

Mitre link : CVE-2025-4134

CVE.ORG link : CVE-2025-4134


JSON object : View

Products Affected

No product.

CWE
CWE-552

Files or Directories Accessible to External Parties