CVE-2019-1010208: Buffer Overflow
IDRIX, Truecrypt Veracrypt, Truecrypt Prior to 1.23-Hotfix-1 (Veracrypt), all versions (Truecrypt) is affected by: Buffer Overflow. The impact is: Minor information disclosure of kernel stack. The component is: Veracrypt NT Driver (veracrypt.sys). The attack vector is: Locally executed code, IOCTL request to driver. The fixed version is: 1.23-Hotfix-1.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-1010208?
CVE-2019-1010208 has a minor severity level due to information disclosure of the kernel stack.
How do I fix CVE-2019-1010208?
To fix CVE-2019-1010208, update VeraCrypt to version 1.23-Hotfix-1 or later.
Which software versions are affected by CVE-2019-1010208?
CVE-2019-1010208 affects TrueCrypt and all versions of VeraCrypt prior to 1.23-Hotfix-1.
What type of vulnerability is CVE-2019-1010208?
CVE-2019-1010208 is a buffer overflow vulnerability.
What component is involved in CVE-2019-1010208?
The component involved in CVE-2019-1010208 is the VeraCrypt NT Driver (veracrypt.sys).