Vulnerability
Quick Heal Internet Security Memory Corruption Vulnerability
Vulnerability Description
We found that the Quick Heal Internet Security is vulnerable to Memory Corruption while parsing malformed Mach-O
file.
CVE ID
CVE-2017-8775
Vendor
Products
- Quick Heal Internet Security 10.1.0.316 and prior
- Quick Heal Total Security 10.1.0.316 and prior
- Quick Heal AntiVirus Pro 10.1.0.316 and prior
Disclosure Timeline
- 25 June 2016 – Reported to vendor
- 5 August 2016 – Patch released
Credits
Ashfaq Ansari – Project Srishti – Payatu Technologies