CVE-2015-7358
Summary
| CVE | CVE-2015-7358 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-10-03 01:29:00 UTC |
| Updated | 2021-06-28 18:20:00 UTC |
| Description | The IsDriveLetterAvailable method in Driver/Ntdriver.c in TrueCrypt 7.0, VeraCrypt before 1.15, and CipherShed, when running on Windows, does not properly validate drive letter symbolic links, which allows local users to mount an encrypted volume over an existing drive letter and gain privileges via an entry in the /GLOBAL?? directory. |
Risk And Classification
Problem Types: CWE-264
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ciphershed | Ciphershed | All | All | All | All |
| Application | Idrix | Veracrypt | All | All | All | All |
| Operating System | Microsoft | Windows | All | All | All | All |
| Operating System | Microsoft | Windows | All | All | All | All |
| Application | Truecrypt | Truecrypt | 7.0 | All | All | All |
| Application | Truecrypt | Truecrypt | 7.0 | All | All | All |
| Application | Veracrypt | Veracrypt | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| oss-security - CVE Request - TrueCrypt 7.1a and VeraCrypt 1.14 Local Elevation of Privilege | MLIST | www.openwall.com | Mailing List, Third Party Advisory |
| Issue 538 - google-security-research - Truecrypt 7 Derived Code/Windows: Drive Letter Symbolic Link Creation EoP - Google Security Research - Google Project Hosting | MISC | code.google.com | Third Party Advisory |
| oss-security - Re: CVE Request - TrueCrypt 7.1a and VeraCrypt 1.14 Local Elevation of Privilege | MLIST | www.openwall.com | Issue Tracking, Mailing List, Third Party Advisory |
| Truecrypt 7 Derived Code/Windows: Drive Letter Symbolic Link Creation Privilege Escalation ≈ Packet Storm | MISC | packetstormsecurity.com | Third Party Advisory, VDB Entry |
| VeraCrypt - Documentation | CONFIRM | veracrypt.codeplex.com | Release Notes, Vendor Advisory |
| TrueCrypt 7 / VeraCrypt 1.13 - Drive Letter Symbolic Link Creation Privilege Escalation | EXPLOIT-DB | www.exploit-db.com | Third Party Advisory, VDB Entry |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.