News

Security updates for ESET Windows products available

Outdated ESET product versions could allow attackers system privileges.

Important security updates are available for various ESET Windows protection solutions. Outdated ESET product versions could allow attackers system privileges.

If you are using ESET anti-virus software for Azure, Windows 10 or Windows Server from 2016, you should update the applications. Under certain conditions, attackers could acquire system rights and compromise your computer. ESET assures that they have not observed any attacks so far.

In a warning message, ESET classifies the threat level of the vulnerability (CVE-2021-37852) as high. The developers warn that attackers could abuse the Windows Antimalware Scan Interface (AMSI). According to ESET, the rights to exploit the vulnerability are only available to the local administrator group. For example, services can request memory buffer scans from antivirus products via the AMSI interface. To protect systems, admins can disable the AMSI option in the advanced settings of the AV software. However, ESET expressly recommends installing updated versions protected against such attacks:

  • ESET NOD32 Antivirus, ESET Internet Security, ESET Smart Security und ESET Smart Security 15.0.19.
  • ESET Endpoint Antivirus for Windows und ESET Endpoint Security for Windows 9.0.2032.6 und 9.0.2032.7
  • ESET Endpoint Antivirus for Windows und ESET Endpoint Security for Windows 8.0.2028.3, 8.0.2028.4, 8.0.2039.3, 8.0.2039.4, 8.0.2044.3, * 8.0.2044.4, 8.1.2031.3, 8.1.2031.4, 8.1.2037.9 und 8.1.2037.10
  • ESET Endpoint Antivirus for Windows und ESET Endpoint Security for Windows 7.3.2055.0 und 7.3.2055.1
  • ESET Server Security for Microsoft Windows Server 8.0.12010.0
  • ESET File Security for Microsoft Windows Server 7.3.12008.0
  • ESET Security for Microsoft SharePoint Server 8.0.15006.
  • ESET Security for Microsoft SharePoint Server 7.3.15002.0
  • ESET Mail Security for IBM Domino 8.0.14006.0
  • ESET Mail Security for IBM Domino 7.3.14003.0
  • ESET Mail Security for Microsoft Exchange Server 8.0.10018.0
  • ESET Mail Security for Microsoft Exchange Server 7.3.10014.0

About Author

I am a technology writer for UpdateStar, covering software, security, and privacy as well as research and innovation in information security. I worked as an editor for German computer magazines for more than a decade before starting to be a team member at UpdateStar.

Next Article

Previous Article