SB2021021503 - Multiple vulnerabilities in McAfee Total Protection
Published: February 15, 2021
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 4 secuirty vulnerabilities.
1) Improper Privilege Management (CVE-ID: CVE-2021-23873)
The vulnerability allows a local user to escalate privileges.
The vulnerability exists due to improper privilege management within the implementation of the QuickClean feature. A local user can escalate privileges.
2) Improper Privilege Management (CVE-ID: CVE-2021-23874)
The vulnerability allows a local user to escalate privileges.
The vulnerability exists due to improper privilege management. A local user can gain elevated privileges and execute arbitrary code bypassing MTP self-defense.
3) Improper Privilege Management (CVE-ID: CVE-2021-23875)
The vulnerability allows a local user to escalate privileges.
The vulnerability exists due to improper privilege management. A local user can execute specially constructed malware, gain elevated privileges and perform arbitrary file deletion as the SYSTEM user.
4) Improper Privilege Management (CVE-ID: CVE-2021-23876)
The vulnerability allows a local user to escalate privileges.
The vulnerability exists due to improper privilege management. A local user can execute specially constructed malware, bypass remote procedure call, gain elevated privileges and perform arbitrary file modification as the SYSTEM user.
Remediation
Install update from vendor's website.
References
- http://service.mcafee.com/FAQDocument.aspx?&id=TS103114
- https://www.zerodayinitiative.com/advisories/ZDI-21-175/
- https://service.mcafee.com/webcenter/portal/oracle/webcenter/page/scopedMD/s55728c97_466d_4ddb_952d_05484ea932c6/Page29.jspx?wc.contextURL=%2Fspaces%2Fcp&articleId=TS103114&_afrLoop=1024260623598121&leftWidth=0%25&showFooter=false&showHeader=false&rightWi