First published: Wed Mar 13 2019(Updated: )
gdwfpcd.sys in G Data Total Security before 2019-02-22 allows an attacker to bypass ACLs because Interpreted Device Characteristics lacks FILE_DEVICE_SECURE_OPEN and therefore files and directories "inside" the \\.\gdwfpcd device are not properly protected, leading to unintended impersonation or object creation.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
G DATA Total Security | <2019-02-22 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-9742 has been classified as a medium severity vulnerability that allows an attacker to bypass access controls.
To fix CVE-2019-9742, ensure that you upgrade G Data Total Security to a version released after February 22, 2019.
CVE-2019-9742 can lead to unintended impersonation or unauthorized access to files and directories managed by the gdwfpcd.sys driver.
All versions of G Data Total Security prior to the release on February 22, 2019, are affected by CVE-2019-9742.
CVE-2019-9742 bypasses access controls due to the absence of FILE_DEVICE_SECURE_OPEN in the interpreted device characteristics of gdwfpcd.sys.