First published: Fri Oct 01 2021(Updated: )
Privilege Escalation vulnerability in a Windows system driver of McAfee Drive Encryption (DE) prior to 7.3.0 could allow a local non-admin user to gain elevated system privileges via exploiting an unutilized memory buffer.
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
McAfee Drive Encryption | <7.3.0 | |
McAfee Drive Encryption | =7.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-23893 is a privilege escalation vulnerability in a Windows system driver of McAfee Drive Encryption (DE) prior to 7.3.0.
If CVE-2021-23893 is exploited, a local non-admin user could gain elevated system privileges.
CVE-2021-23893 allows exploitation of an unutilized memory buffer to escalate privileges.
To fix CVE-2021-23893, you need to update McAfee Drive Encryption to version 7.3.0 or higher.
You can find more information about CVE-2021-23893 at the following link: https://kc.mcafee.com/corporate/index?page=content&id=SB10361