<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Avast: Lack of reliable information about vulnerability fixes]]></title><description><![CDATA[<p dir="auto">While reviewing detection for Avast Free Antivirus and Avast Business Security, we were unable to find reliable information confirming whether the following vulnerabilities have been fixed:</p>
<p dir="auto">CVE-2025-3500<br />
<a href="https://www.zerodayinitiative.com/advisories/ZDI-25-256/" rel="nofollow ugc">https://www.zerodayinitiative.com/advisories/ZDI-25-256/</a><br />
This ZDI advisory specifies a fix; we have decided to rely on this information.</p>
<p dir="auto">CVE-2024-7227<br />
<a href="https://www.zerodayinitiative.com/advisories/ZDI-24-1003/" rel="nofollow ugc">https://www.zerodayinitiative.com/advisories/ZDI-24-1003/</a><br />
We have found no public documentation that this <strong>privilege-escalation vulnerability</strong> has been fixed.</p>
<p dir="auto">Therefore, we have flagged both Avast Free Antivirus and Avast Business Security as <strong>Untracked</strong>. If no fixes are documented soon, we may escalate this status to Insecure / 0-day.</p>
]]></description><link>https://vulndetect.org/topic/2736/avast-lack-of-reliable-information-about-vulnerability-fixes</link><generator>RSS for Node</generator><lastBuildDate>Fri, 15 May 2026 23:47:52 GMT</lastBuildDate><atom:link href="https://vulndetect.org/topic/2736.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 18 Sep 2025 08:36:54 GMT</pubDate><ttl>60</ttl></channel></rss>