Heap buffer out-of-bounds write vulnerability in Avira Antivirus engine when scanning a malformed POSIX tar archive may allow Local Execution of Code or Denial-of-Service of the antivirus engine process.
This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.27.12.
This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.27.12.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Upgrade to Avira scan engine build 8.3.27.12 or any later engine release. Builds at or above 8.3.27.12 include the fix.
Workaround
No workaround given by the vendor.
References
History
Fri, 12 Jun 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Heap buffer out-of-bounds write vulnerability in Avira Antivirus engine when scanning a malformed POSIX tar archive may allow Local Execution of Code or Denial-of-Service of the antivirus engine process. This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.27.12. | |
| Title | Avira antivirus engine heap buffer OOB write when scanning a malformed POSIX tar archive | |
| Weaknesses | CWE-787 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GEN
Published:
Updated: 2026-06-12T22:16:27.745Z
Reserved: 2026-04-20T14:46:06.355Z
Link: CVE-2026-6676
No data.
Status : Received
Published: 2026-06-12T23:16:45.007
Modified: 2026-06-12T23:16:45.007
Link: CVE-2026-6676
No data.
OpenCVE Enrichment
Updated: 2026-06-13T01:00:06Z
Weaknesses