Null pointer dereference vulnerability in Avira Antivirus engine when scanning a malformed Windows PE file may allow Denial-of-Service of the antivirus engine process.
This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.64.
This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.64.
Advisories
No advisories yet.
Fixes
Solution
Upgrade to Avira scan engine build 8.3.70.64 or any later engine release. Builds at or above 8.3.70.64 include the fix.
Workaround
No workaround given by the vendor.
References
History
Sat, 13 Jun 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Gen Digital
Gen Digital avira Antivirus |
|
| Vendors & Products |
Gen Digital
Gen Digital avira Antivirus |
Fri, 12 Jun 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Null pointer dereference vulnerability in Avira Antivirus engine when scanning a malformed Windows PE file may allow Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.64. | |
| Title | Avira antivirus engine null pointer dereference when scanning a malformed PE file | |
| Weaknesses | CWE-476 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GEN
Published:
Updated: 2026-06-12T22:13:49.820Z
Reserved: 2025-07-02T12:01:13.717Z
Link: CVE-2025-7018
No data.
Status : Received
Published: 2026-06-12T22:16:49.467
Modified: 2026-06-12T22:16:49.467
Link: CVE-2025-7018
No data.
OpenCVE Enrichment
Updated: 2026-06-13T12:29:25Z
Weaknesses