AVRD uses world-readable and world-writable permissions on its socket, which allows processes or users on the local system to write arbitrary data into the socket. A local system attacker can make AVRD segmentation fault (SIGSEGV) by writing malformed messages to the socket. (CVE-2020-5895)
Impact
The AVRD process is subject to denial of service (DoS) from a local system attacker.