5.5
/ 10
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Description
Null pointer dereference vulnerability in Avira Antivirus engine when scanning a malformed Windows PE file may allow Denial-of-Service of the antivirus engine process.
This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.64.
This issue affects Avira Antivirus on Windows, macOS, and Linux for engine builds before 8.3.70.64.
Basic Information
ID
CVE-2025-7018
Source
GEN
Published
Jun 12, 2026 at 22:13
Affected Product
Vendor
Gen Digital
Product
Avira Antivirus
Affected Versions
Gen Digital Avira Antivirus 0