SafeNET HighAssurance Remote and SoftRemote IPSecDrv.SYS Local Privilege Escalation Vulnerability
BID:27496
Info
SafeNET HighAssurance Remote and SoftRemote IPSecDrv.SYS Local Privilege Escalation Vulnerability
| Bugtraq ID: | 27496 |
| Class: | Unknown |
| CVE: |
CVE-2008-0573 |
| Remote: | No |
| Local: | Yes |
| Published: | Jan 29 2008 12:00AM |
| Updated: | May 07 2015 05:33PM |
| Credit: | mu-b is credited with the discovery of this issue. |
| Vulnerable: |
Safenet-Inc SafeNet HighAssurance SafeRemote 1.4 .12 Safenet-Inc SafeNet HighAssurance Remote 1.4 .12 |
| Not Vulnerable: | |
Discussion
SafeNET HighAssurance Remote and SoftRemote IPSecDrv.SYS Local Privilege Escalation Vulnerability
SafeNET HighAssurance Remote and SoftRemote are prone to a local privilege-escalation vulnerability.
A successful exploit allows a local attacker to gain SYSTEM-level privileges on affected computers.
This issue affects 'IPSecDrv.sys' 10.4.0.12 when running on Windows operating systems. The driver is included with SafeNET HighAssurance Remote and SafeNET HighAssurance SoftRemote. This issue may also affect other versions as well as versions running on other operating platforms.
SafeNET HighAssurance Remote and SoftRemote are prone to a local privilege-escalation vulnerability.
A successful exploit allows a local attacker to gain SYSTEM-level privileges on affected computers.
This issue affects 'IPSecDrv.sys' 10.4.0.12 when running on Windows operating systems. The driver is included with SafeNET HighAssurance Remote and SafeNET HighAssurance SoftRemote. This issue may also affect other versions as well as versions running on other operating platforms.
Exploit / POC
SafeNET HighAssurance Remote and SoftRemote IPSecDrv.SYS Local Privilege Escalation Vulnerability
The following exploit code is available:
The following exploit code is available:
Solution / Fix
SafeNET HighAssurance Remote and SoftRemote IPSecDrv.SYS Local Privilege Escalation Vulnerability
Solution:
The vendor released patches to address this issue. Please contact the vendor for information on obtaining and applying the patches.
Solution:
The vendor released patches to address this issue. Please contact the vendor for information on obtaining and applying the patches.
References
SafeNET HighAssurance Remote and SoftRemote IPSecDrv.SYS Local Privilege Escalation Vulnerability
References:
References:
- SafeNet Customer Support Team (SafeNet)
- SafeNet Homepage (SafeNet)