Куда я попал?
SECURITM это SGRC система, ? автоматизирующая процессы в службах информационной безопасности. SECURITM помогает построить и управлять ИСПДн, КИИ, ГИС, СМИБ/СУИБ, банковскими системами защиты.
А еще SECURITM это место для обмена опытом и наработками для служб безопасности.

CVE-2026-82964

PUBLISHED 17.09.2026

CNA: GEN

Avast sandbox privilege escalation via unpreserved DACLs on virtualized files in aswSnx.sys

Обновлено: 16.09.2026
Improper preservation of permissions in the Avast sandbox minifilter driver (aswSnx.sys) on Windows allows a local, low-privileged attacker executing inside the sandbox to escape file isolation and escalate to SYSTEM. When the sandbox virtualizes a file it copies the original security descriptor, but the driver opened the virtualization target object with GENERIC_WRITE and FILE_WRITE_ATTRIBUTES only, omitting WRITE_DAC. Every attempt to apply the original DACL therefore failed, and the failure was discarded silently, leaving virtualized copies of sensitive files with permissive permissions. Because the IRP_MJ_CREATE callback additionally did not strip WRITE_DAC for sensitive directories, a sandboxed process could rewrite the security descriptor of a virtualized object, read the virtualized copy of the SAM database, extract local NTLM password hashes and execute code as SYSTEM. The absence of an IRP_MJ_SET_SECURITY callback in the driver's operation registration table is a related defense-in-depth gap, but it is not the control that prevents this attack.

CWE

Идентификатор Описание
CWE-281 The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.
CWE-653 The product does not properly compartmentalize or isolate functionality, processes, or resources that require different privilege levels, rights, or permissions.
CWE-862 The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

CVSS

Оценка Severity Версия Базовый вектор
8.8 HIGH 3.1 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

EPSS

Вероятность Severity Процентиль ? Дата расчёта
0.14% LOW 3.44 17.09.2026

Доп. Информация

Product Status

Avast Free Antivirus, Avast One, Avast Premium Security, Avast Ultimate, Avast Business Security
Product: Avast Free Antivirus, Avast One, Avast Premium Security, Avast Ultimate, Avast Business Security
Vendor: Gen Digital
Default status: affected
Platforms:
  • Windows
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 0 до 26.8 affected
AVG Antivirus Free, AVG Internet Security, AVG Ultimate
Product: AVG Antivirus Free, AVG Internet Security, AVG Ultimate
Vendor: Gen Digital
Default status: affected
Platforms:
  • Windows
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 0 до 26.8 affected
Norton Antivirus Plus, Norton 360 Standard, Norton 360 Deluxe, Norton 360 Advanced
Product: Norton Antivirus Plus, Norton 360 Standard, Norton 360 Deluxe, Norton 360 Advanced
Vendor: Gen Digital
Default status: affected
Platforms:
  • Windows
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 0 до 26.8 affected
 

Ссылки

CISA ADP Vulnrichment

Обновлено: 17.09.2026
Этот блок содержит дополнительную информацию, предоставленную программой CVE для этой уязвимости.

SSVC

Exploitation Automatable Technical Impact Версия Дата доступа
poc no total 2.0.3 17.09.2026

Мы используем cookie-файлы, чтобы получить статистику, которая помогает нам улучшить сервис для вас с целью персонализации сервисов и предложений. Вы может прочитать подробнее о cookie-файлах или изменить настройки браузера. Продолжая пользоваться сайтом, вы даёте согласие на использование ваших cookie-файлов и соглашаетесь с Политикой обработки персональных данных.