Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2904523 times)

0 Members and 8 Guests are viewing this topic.

REDACTED

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4650 on: May 18, 2016, 03:52:07 PM »
What makes you think that avast uses 7zip ?

This:


@bob3160 - ""The security vulnerability has been fixed in 7-Zip 16.0 which has been released this month." - Ah yes, but has Avast installed the upgrade?

Gordon.
« Last Edit: May 18, 2016, 03:55:23 PM by gordon451 »

Offline Gopher John

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 2098
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4651 on: May 18, 2016, 05:32:55 PM »
Avast staff will have to answer this question, regarding whether 7-zip libraries have been updated in Avast.
AMD A6-5350M APU with Radeon HD Graphics, 8.0GB RAM, Win7 Pro SP1 64bit, IE11
i7-3610QM 2.3GHZ, 8.0GB Ram,  Nvidia GeForce GT 630M 2GB, Win7 Pro SP1 64bit, IE 11
Common to both: Avast Premium Security 19.7.2388, WinPatrol Plus, SpywareBlaster 5.5, Opera 12.18, Firefox 68.0.2, MBam Free, CCleaner

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89131
  • No support PMs thanks
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4652 on: May 18, 2016, 06:10:47 PM »
What makes you think that avast uses 7zip ?

This:


@bob3160 - ""The security vulnerability has been fixed in 7-Zip 16.0 which has been released this month." - Ah yes, but has Avast installed the upgrade?

Gordon.

OK, now it's clear, but only when I viewed the code of your post as the image isn't being displayed, as the URL tag doesn't fetch the image, nor is it displaying the code. It's only seen if you look at the underlying code. Which I couldn't see, you would have to have downloaded it (if you could actually see the URL).

Code: [Select]
[img]https://www.dropbox.com/s/ah63ah4il50zwsv/AboutAvast.png?dl=1[/img]
It didn't need a quote of bob3160's post, you could have attached an image of your about.avast screen (which I have just done).
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.4.6112 (build 24.4.9067.762) UI 1.0.803/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline abruptum

  • Massive Poster
  • ****
  • Posts: 2460
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4653 on: May 18, 2016, 07:23:04 PM »
I am using older version of MBAM (1.75) and I replaced 7z.dll in MBAM Program Files folder with 7z.dll from
7-Zip 16.0 Portable and everything is working fine.
I am not sure, but I think Avast uses 7-Zip only in installer.

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89131
  • No support PMs thanks
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4654 on: May 18, 2016, 08:19:13 PM »
I am using older version of MBAM (1.75) and I replaced 7z.dll in MBAM Program Files folder with 7z.dll from
7-Zip 16.0 Portable and everything is working fine.
I am not sure, but I think Avast uses 7-Zip only in installer.

Whilst there is nothing definitive on what avast uses 7zip for, but it wouldn't be unreasonable to think it could be used for unpacking files that are going to be scanned.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.4.6112 (build 24.4.9067.762) UI 1.0.803/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline Dwarden

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1793
  • Ideas, that's ocean without borders!
    • Bohemia Interactive
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4655 on: May 19, 2016, 12:10:07 AM »
Avast will need update the library, just like any other sane security software did ...
https://twitter.com/FoltynD , Tech. Community, Online Services & Distribution manager of Bohemia Interactive

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37547
  • Not a avast user
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4656 on: May 19, 2016, 04:36:11 PM »

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48595
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4657 on: May 19, 2016, 05:58:28 PM »
Avast will need update the library, just like any other sane security software did ...
Avast isn't vulnerable. This should answer your question:
https://blog.avast.com/avast-software-updater-can-help-protect-you-from-security-loopholes-like-the-recent-7-zip-vulnerabilities
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33920
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4658 on: May 19, 2016, 06:42:05 PM »
Most WordPress sites hacked through three vulnerable (outdated) plug-ins:  RevSlider- & GravityForms-plug-ins and the TimThumb-script. A quarter of all hacked WordPress sites had a vulnerable version of just these scripts. When pages are being hacked through outdated software, attackers will place a PHP-backdoor (66%). Why webmasters do not update and patch?  :o
Read about it here: https://sucuri.net/website-security/Reports/Sucuri-Website-Hacked-Report-2016Q1.pdf

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33920
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4659 on: May 19, 2016, 06:58:47 PM »
FBI asks technology firms like Google etc. not to offer end2end encryption as by default (standard),
but only when users opt-in.
Google did so with Google Allo, only icognito-mode comes with a stronger encryption.
Compliance to FBI-demands is better than later having to look for an excuse when backdoors in your software are being detected.
That is not making your software look too good, isn't it? No explanations to make is always better.
Read: https://twitter.com/csoghoian/status/733088078311489540
So encryption will not come as by default, turning the tecnologically unaware user into a potential FBI surveillance victim.
When we wanna protect ourselves we again have to fend for ourselves.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Dwarden

  • Avast Evangelist
  • Super Poster
  • ***
  • Posts: 1793
  • Ideas, that's ocean without borders!
    • Bohemia Interactive
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4660 on: May 19, 2016, 07:31:02 PM »
Avast will need update the library, just like any other sane security software did ...
Avast isn't vulnerable. This should answer your question:
https://blog.avast.com/avast-software-updater-can-help-protect-you-from-security-loopholes-like-the-recent-7-zip-vulnerabilities

so if I toss on avast specially crafted file with those exploits masked as 7zip format it shall not break ...
{crunch crunch}
https://twitter.com/FoltynD , Tech. Community, Online Services & Distribution manager of Bohemia Interactive

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76036
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4661 on: May 20, 2016, 08:38:34 AM »
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

REDACTED

  • Guest
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4662 on: May 20, 2016, 10:16:21 AM »
Avast will need update the library, just like any other sane security software did ...
Avast isn't vulnerable. This should answer your question:
https://blog.avast.com/avast-software-updater-can-help-protect-you-from-security-loopholes-like-the-recent-7-zip-vulnerabilities

so if I toss on avast specially crafted file with those exploits masked as 7zip format it shall not break ...
{crunch crunch}


Actually it probably will try.  First and most important: Avast is not compromised.  However, if Avast opens a v15 7z archive which contains a crafted file, then if the file contains the arbitrary code which the attacker wants executed, then that code will be executed as the result of the UDF vulnerability.  And you should then see (if the code has a sig or does things Avast doesn't like) Avast swing into action and throw the file in the Chest.  I doubt that Avast would be damaged, but OTOH, if the attacker is very very clever and is aiming at Avast...?

The important question here is "Has Avast updated its engine to replace any v15 7-Zip with v16 7-Zip?  And if not, when?"

Gordon.

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76036
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4663 on: May 20, 2016, 10:27:01 AM »
Did you read the blog post provided by Bob..!?

Avast is not affected by these vulnerabilities, but if you are a non-Avast user we recommend you update your antivirus software, if you haven’t done so already.
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48595
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #4664 on: May 20, 2016, 10:59:03 AM »
Did you read the blog post provided by Bob..!?

Avast is not affected by these vulnerabilities, but if you are a non-Avast user we recommend you update your antivirus software, if you haven’t done so already.
Reading is important, Comprehension is paramount. :)
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v24H2 64bit, 32 Gig Ram, 1TB SSD, Avast Free 24.4.6112, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet