
Avast sandbox flaw let local attackers gain system control
CVE-2025-13032 affects Avast and AVG Antivirus before 25.3 on Windows. The sandbox driver reads a user-supplied text length twice — allocating memory with ExAllocatePoolWithTag, then copying with memmove — so a concurrent change overflows kernel memory and lets a local attacker gain system privileges.
Published