CVE-2017-5005
CRITICALQuick Heal Internet Security <10.1.0.316 - Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-5005. PoCs published by payatu.
AI-analyzed exploit summary This repository contains a writeup for CVE-2017-5005, detailing an out-of-bounds write vulnerability in Quick Heal Antivirus products due to improper validation of LC_UNIXTHREAD.cmdsize in Mach-O files. The vulnerability can lead to remote code execution and privilege escalation.
Description
Stack-based buffer overflow in Quick Heal Internet Security 10.1.0.316 and earlier, Total Security 10.1.0.316 and earlier, and AntiVirus Pro 10.1.0.316 and earlier on OS X allows remote attackers to execute arbitrary code via a crafted LC_UNIXTHREAD.cmdsize field in a Mach-O file that is mishandled during a Security Scan (aka Custom Scan) operation.
Exploits (1)
This repository contains a writeup for CVE-2017-5005, detailing an out-of-bounds write vulnerability in Quick Heal Antivirus products due to improper validation of LC_UNIXTHREAD.cmdsize in Mach-O files. The vulnerability can lead to remote code execution and privilege escalation.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H