How the Avira PE authentication leads to a Local Privilege Escalation (CVE-2019-18568)
by Nicolas Delhaye, Vulnerability Researcher CVE-2019-18568 impacts a kernel component of the Avira Free Antivirus software. The “avipbb.sys” driver is responsible for enhancing the local security. In this context, we will see that any executables started on the host machine will be examined from a kernel driver. Unfortunately, this component is prone to an integer