Cybersecurity

CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2

Researchers from the Safe Team have discovered a vulnerability in the Avast antivirus sandbox, which they dubbed CVE-2025-13032. The team found that a crafted PDF file could allow an attacker to bypass the sandbox's security measures and execute code on the host system. The vulnerability is a result of a flaw in the way the sandbox handles PDF files, which can be exploited to gain elevated privileges. The researchers have demonstrated the attack in a proof-of-concept exploit, which they published in a technical article. The vulnerability is rated as high-risk and could potentially be exploited by attackers to gain control over a system.

Read the full article at safateam.com →