PT-2024-6108 · Microsoft+1 · Msasn1.Dll+3

0Xkickit

·

Published

2024-05-23

·

Updated

2024-07-03

·

CVE-2024-22002

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions CORSAIR iCUE version 5.9.105
Description The issue is related to insufficient protection of service data due to the loading of dynamic libraries, including MSASN1.dll, NTASN1.dll, and profapi.dll, in the cuepkg-1.2.6 subdirectory of the installation directory. This allows unprivileged users to insert DLL files, potentially enabling a malicious user to elevate their privileges.
Recommendations For CORSAIR iCUE version 5.9.105, consider restricting access to the cuepkg-1.2.6 subdirectory to prevent unprivileged users from inserting malicious DLL files until a patch is available. As a temporary workaround, avoid using the iCUEUpdateService until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Information Disclosure

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

BDU:2024-07021
CVE-2024-22002

Affected Products

Corsair Icue
Msasn1.Dll
Ntasn1.Dll
Profapi.Dll