CVE-2015-7359
Summary
| CVE | CVE-2015-7359 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-10-03 01:29:00 UTC |
| Updated | 2021-06-28 18:20:00 UTC |
| Description | The (1) IsVolumeAccessibleByCurrentUser and (2) MountDevice methods in Ntdriver.c in TrueCrypt 7.0, VeraCrypt before 1.15, and CipherShed, when running on Windows, do not check the impersonation level of impersonation tokens, which allows local users to impersonate a user at SecurityIdentify level and gain access to other users' mounted encrypted volumes. |
Risk And Classification
Problem Types: CWE-264
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ciphershed | Ciphershed | All | All | All | All |
| Application | Idrix | Veracrypt | All | All | All | All |
| Operating System | Microsoft | Windows | All | All | All | All |
| Operating System | Microsoft | Windows | All | All | All | All |
| Application | Truecrypt | Truecrypt | 7.0 | All | All | All |
| Application | Truecrypt | Truecrypt | 7.0 | All | All | All |
| Application | Veracrypt | Veracrypt | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| oss-security - CVE Request - TrueCrypt 7.1a and VeraCrypt 1.14 Local Elevation of Privilege | MLIST | www.openwall.com | Mailing List, Third Party Advisory |
| oss-security - Re: CVE Request - TrueCrypt 7.1a and VeraCrypt 1.14 Local Elevation of Privilege | MLIST | www.openwall.com | Issue Tracking, Mailing List, Third Party Advisory |
| VeraCrypt - Documentation | CONFIRM | veracrypt.codeplex.com | Release Notes, Vendor Advisory |
| Issue 537 - google-security-research - Truecrypt 7 Derived Code/Windows: Incorrect Impersonation Token Handling EoP - Google Security Research - Google Project Hosting | MISC | code.google.com | Issue Tracking, Third Party Advisory |
| Truecrypt 7 Privilege Escalation ≈ Packet Storm | MISC | packetstormsecurity.com | Third Party Advisory, VDB Entry |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.