CVE-2024-13206 Information

Description

A vulnerability classified as critical has been found in REVE Antivirus 1.0.0.0 on Linux. This affects an unknown part of the file /usr/local/reveantivirus/tmp/reveinstall. The manipulation leads to incorrect default permissions. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Reference

https://github.com/hawkteam404/RnD_Public/blob/main/reve_av_multiple_vuln.md https://vuldb.com/?ctiid.290799 https://vuldb.com/?id.290799 https://vuldb.com/?submit.471160

Share on: