CVE-2019-19501: High severity veracrypt vulnerability
Published Dec 13, 2019
·Updated
VeraCrypt 1.24 allows Local Privilege Escalation during execution of VeraCryptExpander.exe.
Affected Software
1 affected component
IDRIX Veracrypt=1.24
Remediation
Event History
Dec 13, 2019
CVE Published
via MITRE·12:27 PM
Data Sourced
via MITRE·12:27 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-19501?
CVE-2019-19501 has a moderate severity rating as it allows local privilege escalation.
2
How do I fix CVE-2019-19501?
To fix CVE-2019-19501, update VeraCrypt to the latest version available beyond 1.24.
3
What type of attack does CVE-2019-19501 enable?
CVE-2019-19501 enables a local privilege escalation attack on systems running VeraCrypt 1.24.
4
Who is affected by CVE-2019-19501?
CVE-2019-19501 affects users of VeraCrypt version 1.24 on their local machines.
5
Is CVE-2019-19501 a remote or local vulnerability?
CVE-2019-19501 is a local vulnerability that requires physical or local access to exploit.