New Windows 10 zero day: A security researcher and exploit broker known as SandboxEscaper today published details of a zero day affecting Windows 10 and Windows Server 2019 operating systems.
The details posted on GitHub, in the same repository, where the researcher has already published another eight zero days.
Today's exploit is a second bypass for Microsoft CVE-2019-0841 vulnerability. The first exploit for the same vulnerability was published two weeks ago.
According to Microsoft, CVE-2019-0841 is a vulnerability that allows users with very few rights to understand the archives που ανήκουν στο NT AUTHORITY\SYSTEM με ένα απλό overwriting στα permissions του archiveon target.
Successful exploitation of course gives full rights control"To the low that had few rights, according to Nabeel Ahmed of Dimension Data Belgium, who revealed the error to Microsoft.
Microsoft has released for the first time an update for CVE-2019-0841 April 2019.
On GitHub today, SandboxEscaper reports that there is a second way to bypass CVE-2019-0841 fixes and allow an attacker with very few rights to "play" with files that he previously did not have full control over.
Here we should mention that this is another one LPE (local privilege escalation) vulnerability, which means that attackers cannot exploit the flaw to break into systems, but can use it to gain full access in files that would not normally be in control.
The zero day introduced today by SandboxEscaper uses an innovative technique, but there are certainly easier, faster and more efficient ways to get a higher permissions on Windows - for example, using one of SandboxEscaper's previous zero days.
It's also worth mentioning that even though Microsoft had time to patch the previous three zero days, it didn't. Let's see if it does on the next Patch Tuesday scheduled for next weekteam, 11 June.
_________________
- The new GoldBrute botnet tries to break 1,5 million servers with RDP
- Google Stadia comes in November: Everything you need to know
- Kaspersky Lab: became Kaspersky neat with a new logo
- Android 440 millions of installed apps with aggressive ads