CVE-2023-1585
CVSS V2 None
CVSS V3 None
Description
Avast and AVG Antivirus for Windows were susceptible to a Time-of-check/Time-of-use (TOCTOU) vulnerability in the Quarantine process, leading to arbitrary file/directory deletion. The issue was fixed with Avast and AVG Antivirus version 22.11 and virus definitions from 14 February 2023 or later.
Overview
- CVE ID
- CVE-2023-1585
- Assigner
- security@nortonlifelock.com
- Vulnerability Status
- Undergoing Analysis
- Published Version
- 2023-04-19T19:15:06
- Last Modified Date
- 2023-04-19T19:52:18
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://support.norton.com/sp/static/external/tools/security-advisories.html |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-1585 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1585 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2023-04-19 20:01:34 | Added to TrackCVE | |||
2023-04-19 20:01:37 | Weakness Enumeration | new | ||
2023-04-26 11:01:03 | Awaiting Analysis | Undergoing Analysis | Vulnerability Status | updated |