Privilege escalation in Microsoft Windows - CVE-2018-7249

 

Privilege escalation in Microsoft Windows - CVE-2018-7249

Published: March 1, 2018


Vulnerability identifier: #VU10789
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-7249
CWE-ID: CWE-416
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local attacker to gain elevated privileges on the target system.

The vulnerability exists due to use-after-free flaw in secdrv.sys in Macrovision SafeDisc. A local attacker can send two carefully timed calls to IOCTL 0xCA002813, trigger race condition and memory corruption and execute arbitrary code with system privileges.


Affected software

Microsoft Windows

How to mitigate CVE-2018-7249

Refer to Microsoft Security Bulletin MS15-097 for patch, upgrade or suggested workaround information.


External References

Related Security Bulletins