PT-2015-2684 · Microsoft · Windows+1

Publicado

2015-11-10

·

Atualizado

2018-10-12

·

CVE-2015-6097

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Windows versions prior to the fixed version
Description The issue is a heap-based buffer overflow in Windows Journal that allows remote attackers to execute arbitrary code via a crafted Journal (.jnt) file. This can enable an attacker to take control of the affected system, install programs, view, change, or delete data, or create new accounts with full user rights. The vulnerability requires a user to open a specially crafted Journal file with an affected version of Windows Journal. Users with fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Recommendations For Microsoft Windows versions prior to the fixed version, update to the latest version to resolve the issue. As a temporary workaround, consider avoiding the use of Windows Journal to open .jnt files until a patch is available. Restrict access to Windows Journal to minimize the risk of exploitation.

Correção

RCE

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-12049
CVE-2015-6097

Produtos afetados

Windows
Windows Journal