Microword eScan Antivirus
cpe:2.3:a:escanav:anti-virus:*:*:*:*:*:*:*, +3 more
- 7.0.32
A stack-based buffer overflow vulnerability has been identified in Microword eScan Antivirus version 7.0.32 for Linux. The issue resides in the 'removeExtraSlashes' function of the 'rtscanner' file, which is part of the Folder Watch List Handler component. This vulnerability allows for local exploitation, as the 'rtscanner' binary runs as a system service and can be manipulated by unprivileged users. The vulnerability disrupts the application's real-time protection by overwriting the stack with excessive data, potentially leading to arbitrary code execution.
Exploitation of this vulnerability causes a stack-based buffer overflow, which can be leveraged to execute arbitrary code by overwriting the return address on the stack.
To reproduce this vulnerability, create a folder with a very long name (up to 254 characters) within the '/tmp/' or '/home/' directories. The 'rtscanner' service will then be disrupted, as it fails to handle the excessive path length, causing the real-time protection feature of eScan Antivirus to be temporarily disabled.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.