CVE-2023-1586
CVSS V2 None
CVSS V3 None
Description
Avast and AVG Antivirus for Windows were susceptible to a Time-of-check/Time-of-use (TOCTOU) vulnerability in the restore process leading to arbitrary file creation. The issue was fixed with Avast and AVG Antivirus version 22.11
Overview
- CVE ID
- CVE-2023-1586
- Assigner
- security@nortonlifelock.com
- Vulnerability Status
- Undergoing Analysis
- Published Version
- 2023-04-19T19:15:06
- Last Modified Date
- 2023-04-19T19:52:18
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://support.norton.com/sp/static/external/tools/security-advisories.html |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-1586 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1586 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2023-04-19 20:01:34 | Added to TrackCVE | |||
2023-04-19 20:01:37 | Weakness Enumeration | new | ||
2023-04-26 11:01:03 | Awaiting Analysis | Undergoing Analysis | Vulnerability Status | updated |