First published: Fri Sep 07 2012(Updated: )
Untrusted search path vulnerability in Amazon Kindle for PC 1.3.0 30884 allows local users to gain privileges via a Trojan horse wintab32.dll file in the current working directory, as demonstrated by a directory that contains a .azw file. NOTE: some of these details are obtained from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Amazon Kindle for PC | =1.3.0.30884 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-5268 is classified as a high severity vulnerability due to its potential to allow local users to gain elevated privileges.
To fix CVE-2010-5268, ensure that you do not execute Kindle for PC from directories containing potentially malicious files and keep the application updated to the latest version.
Users of Amazon Kindle for PC version 1.3.0.30884 may be affected by CVE-2010-5268.
The impact of CVE-2010-5268 can result in unauthorized privilege escalation if exploited.
No, CVE-2010-5268 cannot be exploited remotely; it requires local access to the system.