CVE-2016-8732: High severity sophos invincea vulnerability
Multiple security flaws exists in InvProtectDrv.sys which is a part of Invincea Dell Protected Workspace 5.1.1-22303. Weak restrictions on the driver communication channel and additional insufficient checks allow any application to turn off some of the protection mechanisms provided by the Invincea product.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-8732?
CVE-2016-8732 is classified as a high severity vulnerability due to the potential for exploitation that allows malicious applications to disable protection mechanisms.
How do I fix CVE-2016-8732?
To fix CVE-2016-8732, users must update to a later version of Invincea Dell Protected Workspace that addresses these security flaws.
What are the consequences of exploiting CVE-2016-8732?
Exploitation of CVE-2016-8732 can lead to the bypassing of important security protections provided by the Invincea software, potentially exposing the system to further attacks.
Which software versions are affected by CVE-2016-8732?
CVE-2016-8732 affects Invincea Dell Protected Workspace version 5.1.1-22303.
Who is the vendor for CVE-2016-8732?
The vendor for CVE-2016-8732 is Sophos, which developed the Invincea Dell Protected Workspace software.