CVE-2022-27534

Kaspersky Anti-Virus products for home and Kaspersky Endpoint Security with antivirus databases released before 12 March 2022 had a bug in a data parsing module that potentially allowed an attacker to execute arbitrary code. The fix was delivered automatically. Credits: Georgy Zaytsev (Positive Technologies).
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:kaspersky:anti-virus:*:*:*:*:*:*:*:*
cpe:2.3:a:kaspersky:endpoint_security:*:*:*:*:*:*:*:*
cpe:2.3:a:kaspersky:internet_security:*:*:*:*:*:*:*:*
cpe:2.3:a:kaspersky:security_cloud:*:*:*:*:*:*:*:*
cpe:2.3:a:kaspersky:small_office_security:*:*:*:*:*:*:*:*
cpe:2.3:a:kaspersky:total_security:*:*:*:*:*:*:*:*

History

08 Apr 2022, 17:58

Type Values Removed Values Added
First Time Kaspersky internet Security
Kaspersky total Security
Kaspersky endpoint Security
Kaspersky small Office Security
Kaspersky anti-virus
Kaspersky
Kaspersky security Cloud
References (MISC) https://support.kaspersky.com/general/vulnerability.aspx?el=12430#310322_2 - (MISC) https://support.kaspersky.com/general/vulnerability.aspx?el=12430#310322_2 - Broken Link
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : 7.5
v3 : 9.8
CPE cpe:2.3:a:kaspersky:endpoint_security:*:*:*:*:*:*:*:*
cpe:2.3:a:kaspersky:security_cloud:*:*:*:*:*:*:*:*
cpe:2.3:a:kaspersky:anti-virus:*:*:*:*:*:*:*:*
cpe:2.3:a:kaspersky:total_security:*:*:*:*:*:*:*:*
cpe:2.3:a:kaspersky:small_office_security:*:*:*:*:*:*:*:*
cpe:2.3:a:kaspersky:internet_security:*:*:*:*:*:*:*:*

01 Apr 2022, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-04-01 23:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-27534

Mitre link : CVE-2022-27534

CVE.ORG link : CVE-2022-27534


JSON object : View

Products Affected

kaspersky

  • internet_security
  • endpoint_security
  • total_security
  • small_office_security
  • security_cloud
  • anti-virus