7.8

CVE-2015-7359

The (1) IsVolumeAccessibleByCurrentUser and (2) MountDevice methods in Ntdriver.c in TrueCrypt 7.0, VeraCrypt before 1.15, and CipherShed, when running on Windows, do not check the impersonation level of impersonation tokens, which allows local users to impersonate a user at SecurityIdentify level and gain access to other users' mounted encrypted volumes.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ciphershed ≫ Ciphershed Version <= 0.7.5.0
   Microsoft ≫ Windows
Idrix ≫ Veracrypt Version <= 1.14
   Microsoft ≫ Windows
Truecrypt ≫ Truecrypt Version 7.0
   Microsoft ≫ Windows
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.58% 0.448
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
NIST 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.openwall.com/lists/oss-security/2015/09/22/7
Third Party Advisory
Mailing List
http://www.openwall.com/lists/oss-security/2015/09/24/3
Third Party Advisory
Mailing List
Issue Tracking
https://veracrypt.codeplex.com/wikipage?title=Release%20Notes
Vendor Advisory
Release Notes
http://packetstormsecurity.com/files/133877/Truecrypt-7-Privilege-Escalation.html
Third Party Advisory
VDB Entry
https://code.google.com/p/google-security-research/issues/detail?id=537
Third Party Advisory
Issue Tracking