CVE Vulnerabilities

CVE-2022-27534

Published: Apr 01, 2022 | Modified: Apr 08, 2022
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security with antivirus databases released before 12 March 2022 had a bug in a data parsing module that potentially allowed an attacker to execute arbitrary code. The fix was delivered automatically. Credits: Georgy Zaytsev (Positive Technologies).

Affected Software

Name Vendor Start Version End Version
Anti-virus Kaspersky * 12.03.2022 (excluding)
Endpoint_security Kaspersky * 12.03.2022 (excluding)
Internet_security Kaspersky * 12.03.2022 (excluding)
Security_cloud Kaspersky * 12.03.2022 (excluding)
Small_office_security Kaspersky * 12.03.2022 (excluding)
Total_security Kaspersky * 12.03.2022 (excluding)

References