SB2019111337 - Privilege escalation in McAfee Antivirus Software
Published: November 13, 2019
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Permissions, Privileges, and Access Controls (CVE-ID: CVE-2019-3648)
The vulnerability allows a remote user to escalate privileges on the system.
The vulnerability exists due to the affected software does not check if the third-party files have the correct digital signatures and are loaded from the correct location. A remote administrator can load an unsigned arbitrary DLL, execute arbitrary code on the target system and escalate to SYSTEM privileges.
Remediation
Install update from vendor's website.
References
- https://gbhackers.com/vulnerability-mcafee-antivirus/
- https://service.mcafee.com/webcenter/portal/oracle/webcenter/page/scopedMD/s55728c97_466d_4ddb_952d_05484ea932c6/Page29.jspx?wc.contextURL=%2Fspaces%2Fcp&articleId=TS102984&_afrLoop=518789560755102&leftWidth=0%25&showFooter=false&showHeader=false&rightWidth=0%25¢erWidth=100%25#!%40%40%3FshowFooter%3Dfalse%26_afrLoop%3D518789560755102%26articleId%3DTS102984%26leftWidth%3D0%2525%26showHeader%3Dfalse%26wc.contextURL%3D%252Fspaces%252Fcp%26rightWidth%3D0%2525%26centerWidth%3D100%2525%26_adf.ctrl-state%3D17dpx1xd3k_75