CVE-2017-10706
Published Jul 2, 2017When Antiy Antivirus Engine before 5.0.0.05171547 scans a special ZIP archive, it crashes with a stack-based buffer overflow because a fixed path length is used.
Vendor/product archive
2 CVEs tagged to antiy / antivirus_engine — 0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.
When Antiy Antivirus Engine before 5.0.0.05171547 scans a special ZIP archive, it crashes with a stack-based buffer overflow because a fixed path length is used.
Antiy Antivirus Engine 5.0.0.06281654 allows local users to cause a denial of service (BSOD) via a long third argument in a DeviceIoControl call.