VYPR
Medium severity6.5NVD Advisory· Published Apr 19, 2023· Updated Jun 17, 2026

CVE-2023-1586

CVE-2023-1586

Description

Avast and AVG Antivirus for Windows were susceptible to a Time-of-check/Time-of-use (TOCTOU) vulnerability in the restore process leading to arbitrary file creation. The issue was fixed with Avast and AVG Antivirus version 22.11

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • Avast\!/Antivirus2 versions
    cpe:2.3:a:avast:antivirus:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:avast:antivirus:*:*:*:*:*:*:*:*range: >=22.5,<22.11
    • (no CPE)range: = 22.11
  • cpe:2.3:a:avg:anti-virus:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:avg:anti-virus:*:*:*:*:*:*:*:*range: >=22.5,<22.11
    • (no CPE)range: = 22.11
    • (no CPE)range: 22.5
  • Range: 22.5

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.