CVE-2020-9331

CVE-2020-9331

CryptoPro CSP through 5.0.0.10004 on 32-bit platforms allows Local Privilege Escalation (by local users with the SeChangeNotifyPrivilege right) because user-mode input is mishandled during process creation. An attacker can write arbitrary data to an arbitrary location in the kernel’s address space.

Source: CVE-2020-9331

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다