Tracker / CVE-2015-7358
CVE-2015-7358
Alta 7.8
The IsDriveLetterAvailable method in Driver/Ntdriver.c in TrueCrypt 7.0, VeraCrypt before 1.15, and CipherShed, when running on Windows, does not properly validate drive letter symbolic links, which allows local users to mount an encrypted volume over an existing drive letter and gain privileges via an entry in the /GLOBAL?? directory.
Prodotti e versioni affette
| ciphershed | ciphershed · … → 0.7.5.0 |
|---|---|
| idrix | veracrypt · … → 1.14 |
| truecrypt | truecrypt |
Analisi
Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.