P
PeriodPusher
Guest
Latest update appears to have caused Defender to crash whenever scanning a file with multiple period characters in them.
This appears to be exploitable as a denial of service attack on the scanner. But not sure of impact of service falling over on this.
To reproduce create a file with an extra period in the name (For example "test..xml") and provoke a defender scan.
Not sure if this is only format that causes service crash.
To recover from this issue.
Remove extra period character from file names.
Exclude folders with files with this naming convention from being scanned. (Cannot exclude exact files as selecting them crashes service)
Remember to restart service "WinDefend" Display name "Windows Defender Antivirus Service".
More...
This appears to be exploitable as a denial of service attack on the scanner. But not sure of impact of service falling over on this.
To reproduce create a file with an extra period in the name (For example "test..xml") and provoke a defender scan.
Not sure if this is only format that causes service crash.
To recover from this issue.
Remove extra period character from file names.
Exclude folders with files with this naming convention from being scanned. (Cannot exclude exact files as selecting them crashes service)
Remember to restart service "WinDefend" Display name "Windows Defender Antivirus Service".
More...