Intrusion Prevention

Avast.Antivirus.X509.Certificate.CName.Remote.Command.Execution

Description

This indicates an attack attempt against a Remote Code Execution vulnerability in the Avast Antivirus.
The vulnerability is caused by an error when the vulnerable software handle a malformed TLS packet. A remote attacker can exploit this to execute arbitrary code in the context of the affected application via a crafted request.

Affected Products

AVAST Software Antivirus

Impact

System Compromise: Remote attackers can gain control of vulnerable systems

Recommended Actions

Currently we are unaware of any vendor supplied patch for this issue.

Other References

ID=546