Aug. 16, 2023, 4:18 p.m. |

CERT Recently Published Vulnerability Notes kb.cert.org

Overview


Parsec updater for Windows was prone to a local privilege escalation vulnerability, this vulnerability allowed a local user with Parsec access to gain NT_AUTHORITY/SYSTEM privileges.


Description


The vulnerability is a time-of-check time–of-use (TOCTOU) vulnerability. There existed a small window between verifying the signature and integrity of the update DLL and the execution of DLL main.


By exploiting this race condition, a local attacker could swap out the officially signed Parsec DLL with a DLL that they created, which would …

access app check code desktop elevation of privilege escalation flaw integrity local local privilege escalation privilege privilege escalation privileges process remote desktop system system privileges toctou verification vulnerability windows

More from kb.cert.org / CERT Recently Published Vulnerability Notes

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

COMM Penetration Tester (PenTest-2), Chantilly, VA OS&CI Job #368

@ Allen Integrated Solutions | Chantilly, Virginia, United States

Consultant Sécurité SI H/F Gouvernance - Risques - Conformité

@ Hifield | Sèvres, France

Infrastructure Consultant

@ Telefonica Tech | Belfast, United Kingdom