CVE-2017-9811: Kaspersky Anti-Virus For Linux Server
Critical severity, CVSS 9.8. EPSS: 10.5% chance of exploitation in the next 30 days.
The kluser is able to interact with the kav4fs-control binary in Kaspersky Anti-Virus for Linux File Server before Maintenance Pack 2 Critical Fix 4 (version 8.0.4.312). By abusing the quarantine read and write operations, it is possible to elevate the privileges to root.
Affected products
- Kaspersky Anti-Virus For Linux Server: up to and including 8.0.3.297
Published 2017-07-17. Last modified 2026-06-17.