Security Advisory

CVE-2023-5760

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-11-08 16:36:29
Last updated 2024-09-03 20:20:38
Assigner NLOK
State PUBLISHED

Description

A time-of-check to time-of-use (TOCTOU) bug in handling of IOCTL (input/output control) requests. This TOCTOU bug leads to an out-of-bounds write vulnerability which can be further exploited, allowing an attacker to gain full local privilege escalation on the system.This issue affects Avast/Avg Antivirus: 23.8.