CVE-2014-0568
published 2014-09-17CVE-2014-0568: The NtSetInformationFile system call hook feature in Adobe Reader and Acrobat 10.x before 10.1.12 and 11.x before 11.0.09 on Windows allows attackers to bypass…
PriorityP347critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
4.12%
89.7th percentile
The NtSetInformationFile system call hook feature in Adobe Reader and Acrobat 10.x before 10.1.12 and 11.x before 11.0.09 on Windows allows attackers to bypass a sandbox protection mechanism, and consequently execute native code in a privileged context, via an NTFS junction attack.
Affected
52 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | acrobat | <= 11.0.8 | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
| adobe | acrobat | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-x8vq-jv88-c5cc: Race condition in the MoveFileEx call hook feature in Adobe Reader and Acrobat 11
ghsa_unreviewed·2022-05-17·CVSS 10.0
CVE-2014-9150 [CRITICAL] CWE-362 GHSA-x8vq-jv88-c5cc: Race condition in the MoveFileEx call hook feature in Adobe Reader and Acrobat 11
Race condition in the MoveFileEx call hook feature in Adobe Reader and Acrobat 11.x before 11.0.09 on Windows allows attackers to bypass a sandbox protection mechanism, and consequently write to files in arbitrary locations, via an NTFS junction attack, a similar issue to CVE-2014-0568.
GHSA
GHSA-xx89-v728-cjjc: The NtSetInformationFile system call hook feature in Adobe Reader and Acrobat 10
ghsa_unreviewed·2022-05-17
CVE-2014-0568 [HIGH] GHSA-xx89-v728-cjjc: The NtSetInformationFile system call hook feature in Adobe Reader and Acrobat 10
The NtSetInformationFile system call hook feature in Adobe Reader and Acrobat 10.x before 10.1.12 and 11.x before 11.0.09 on Windows allows attackers to bypass a sandbox protection mechanism, and consequently execute native code in a privileged context, via an NTFS junction attack.
Project0
Windows 10^H^H Symbolic Link Mitigations - Project Zero
project_zero·2015-08-01
CVE-2014-0568 Windows 10^H^H Symbolic Link Mitigations - Project Zero
Posted by James Forshaw, abusing symbolic links like it’s 1999.
For the past couple of years I’ve been researching Windows elevation of privilege attacks. This might be escaping sandboxing or gaining system privileges. One of the techniques I’ve used multiple times is abusing the symbolic link facilities of the Windows operating system to redirect privileged code to create files or registry keys to escape the restrictive execution context. Symbolic links in themselves are not vulnerabilities, instead they’re useful primitives for exploiting different classes of vulnerabilities such as resource planting or time-of-check time-of-use.
This blog post contains details of a few changes Microsoft has made to Windows 10, and now back ported (in MS15-090) as far back as Windows Vista which chan
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://helpx.adobe.com/security/products/reader/apsb14-20.htmlhttp://www.securityfocus.com/bid/69828http://www.securitytracker.com/id/1030853https://code.google.com/p/google-security-research/issues/detail?id=94https://exchange.xforce.ibmcloud.com/vulnerabilities/96000http://helpx.adobe.com/security/products/reader/apsb14-20.htmlhttp://www.securityfocus.com/bid/69828http://www.securitytracker.com/id/1030853https://code.google.com/p/google-security-research/issues/detail?id=94https://exchange.xforce.ibmcloud.com/vulnerabilities/96000
2014-09-17
Published