7.8

CVE-2015-7359

The (1) IsVolumeAccessibleByCurrentUser and (2) MountDevice methods in Ntdriver.c in TrueCrypt 7.0, VeraCrypt before 1.15, and CipherShed, when running on Windows, do not check the impersonation level of impersonation tokens, which allows local users to impersonate a user at SecurityIdentify level and gain access to other users' mounted encrypted volumes.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiphershedCiphershed Version <= 0.7.5.0
   MicrosoftWindows
IdrixVeracrypt Version <= 1.14
   MicrosoftWindows
TruecryptTruecrypt Version7.0
   MicrosoftWindows
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.58% 0.43
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.openwall.com/lists/oss-security/2015/09/22/7
Third Party Advisory
Mailing List
http://www.openwall.com/lists/oss-security/2015/09/24/3
Third Party Advisory
Mailing List
Issue Tracking
https://veracrypt.codeplex.com/wikipage?title=Release%20Notes
Vendor Advisory
Release Notes
http://packetstormsecurity.com/files/133877/Truecrypt-7-Privilege-Escalation.html
Third Party Advisory
VDB Entry
https://code.google.com/p/google-security-research/issues/detail?id=537
Third Party Advisory
Issue Tracking