Symantec Encryption Desktop for OS X CVE-2014-3431 Insecure File Permissions Vulnerability
BID:68077
Info
Symantec Encryption Desktop for OS X CVE-2014-3431 Insecure File Permissions Vulnerability
| Bugtraq ID: | 68077 |
| Class: | Unknown |
| CVE: |
CVE-2014-3431 |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 20 2014 12:00AM |
| Updated: | Jun 20 2014 12:00AM |
| Credit: | Aaron Sigel |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Symantec Encryption Desktop for OS X CVE-2014-3431 Insecure File Permissions Vulnerability
Symantec Encryption Desktop is prone to an insecure file-permissions vulnerability.
An attacker can exploit this issue to gain unauthorized access to or create arbitrary files with elevated privileges.
Symantec Encryption Desktop is prone to an insecure file-permissions vulnerability.
An attacker can exploit this issue to gain unauthorized access to or create arbitrary files with elevated privileges.
Exploit / POC
Symantec Encryption Desktop for OS X CVE-2014-3431 Insecure File Permissions Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Symantec Encryption Desktop for OS X CVE-2014-3431 Insecure File Permissions Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Symantec Encryption Desktop for OS X CVE-2014-3431 Insecure File Permissions Vulnerability
References:
References:
- F-Secure Homepage (F-Secure)
- Symantec Encryption Desktop Product Page (Symantec)
- Security Advisories Relating to Symantec Products - Symantec Encryption Desktop (Symantec)