Security Advisory

CVE-2019-17093

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-10-23 16:59:08
Last updated 2024-08-05 01:33:16
Assigner mitre
State PUBLISHED

Description

An issue was discovered in Avast antivirus before 19.8 and AVG antivirus before 19.8. A DLL Preloading vulnerability allows an attacker to implant %WINDIR%system32wbemcomn.dll, which is loaded into a protected-light process (PPL) and might bypass some of the self-defense mechanisms. This affects all components that use WMI, e.g., AVGSvc.exe 19.6.4546.0 and TuneupSmartScan.dll 19.1.884.0.