First published: Tue Jul 21 2009(Updated: )
NOS Microsystems getPlus Download Manager, as used in Adobe Reader 1.6.2.36 and possibly other versions, Corel getPlus Download Manager before 1.5.0.48, and possibly other products, installs NOS\bin\getPlus_HelperSvc.exe with insecure permissions (Everyone:Full Control), which allows local users to gain SYSTEM privileges by replacing getPlus_HelperSvc.exe with a Trojan horse program, as demonstrated by use of getPlus Download Manager within Adobe Reader. NOTE: within Adobe Reader, the scope of this issue is limited because the program is deleted and the associated service is not automatically launched after a successful installation and reboot.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Corel getPlus Download Manager | =1.5.0.48 | |
Corel getPlus Download Manager | =1.6.2.36 | |
Adobe Acrobat Reader | =9.0 | |
Adobe Acrobat Reader | =9.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2564 is considered a moderate severity vulnerability due to its impact on local user permissions.
To fix CVE-2009-2564, update the affected software versions of Corel getPlus Download Manager and NOS Microsystems getPlus Download Manager to the latest available versions.
CVE-2009-2564 affects NOS Microsystems getPlus Download Manager 1.6.2.36, Corel getPlus Download Manager before 1.5.0.48, and specific versions of Adobe Acrobat Reader.
The potential risks of CVE-2009-2564 include unauthorized access and modifications by local users due to insecure permissions.
A possible workaround for CVE-2009-2564 is to restrict permissions on the NOS\bin\getPlus_HelperSvc.exe file until an official patch or update can be applied.