CVE-2009-4049

avast! Home and Professional 4.8.1356.0 - Memory Corruption

Title source: llm

Description

Heap-based buffer overflow in aswRdr.sys (aka the TDI RDR driver) in avast! Home and Professional 4.8.1356.0 allows local users to cause a denial of service (memory corruption) or possibly gain privileges via crafted arguments to IOCTL 0x80002024.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Evilcry · clocalwindows
https://www.exploit-db.com/exploits/33360
nomisec WORKING POC 1 stars
by fengjixuchui · poc
https://github.com/fengjixuchui/CVE-2009-4049

Scores

EPSS 0.0040
EPSS Percentile 61.0%

Details

CWE
CWE-119
Status published
Products (2)
avast/avast_antivirus_home 4.8.1356.0
avast/avast_antivirus_professional 4.8.1356.0
Published Nov 23, 2009
Tracked Since Feb 18, 2026