Avast Urges Immediate Update of Antivirus to Fix Security Flaw

30 Apr 2025

Security researchers have identified a serious vulnerability in Avast Free Antivirus, which could potentially allow attackers to escalate privileges and execute malicious code with kernel-level access. This flaw, which affects the security of millions of users, has been assigned the identifier CVE-2025-3500 and carries a high CVSS score of 8.8, indicating its potential severity.

Discovered by cybersecurity expert Baris Akkaya on April 2, 2025, the vulnerability arises from improper validation of user-supplied data in the aswbidsdriver kernel driver. This oversight can lead to an integer overflow, creating an opportunity for attackers to exploit the flaw by allocating a buffer before escalating privileges and executing arbitrary code.

Immediate Action Recommended

The good news for users is that Avast responded promptly to this discovery, releasing a patch just a few weeks later. On April 24, 2025, the company made public the details of the vulnerability after issuing a fix in version 25.3.9983.922 of Avast Free Antivirus. Users are strongly urged to update their software to this version immediately to mitigate the risk associated with this vulnerability.

It is important to note that the exploit requires local access to the targeted system. This means that attackers would first need to infiltrate the system to take advantage of this particular vulnerability. However, the potential implications make it a critical issue for users to address without delay.

Protection and Best Practices

The Cybersecurity Help database outlines multiple versions of Avast Free Antivirus that have been affected by this vulnerability. To stay protected, security experts recommend enabling automatic updates, which would ensure that the latest security patches are applied as soon as they are available.

For users who may not have automatic updates enabled, it is advised to regularly check for software updates and apply them promptly to reduce the risk of exposure to such vulnerabilities. Avast’s quick response and the availability of a patch highlight the importance of vigilance and timely software maintenance in ensuring online security.

Avast Free Antivirus

Avast Free Antivirus download for free to PC or mobile

Latest update Avast Free Antivirus download for free for Windows PC or Android mobile

3
856 reviews
3233 downloads

News and reviews about Avast Free Antivirus

30 Apr 2025

Avast Urges Immediate Update of Antivirus to Fix Security Flaw

Avast has released a patch for a critical vulnerability in its Free Antivirus software that could allow attackers to execute malicious code with kernel access. Users should update immediately to version 25.3.9983.922 to mitigate risks associated with this flaw.

Read more