First published: Thu Jun 10 2021(Updated: )
A vulnerability in the preloading mechanism of specific dynamic link libraries in McAfee Agent for Windows prior to 5.7.3 could allow an authenticated, local attacker to perform a DLL preloading attack with unsigned DLLs. To exploit this vulnerability, the attacker would need to have valid credentials on the Windows system. This would result in the user gaining elevated permissions and being able to execute arbitrary code.
Credit: psirt@mcafee.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mcafee Mcafee Agent | >=5.0.0<5.7.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-31840 is a vulnerability in the preloading mechanism of specific dynamic link libraries in McAfee Agent for Windows prior to 5.7.3.
CVE-2021-31840 could allow an authenticated, local attacker to perform a DLL preloading attack with unsigned DLLs.
The severity of CVE-2021-31840 is high, with a severity value of 7.3.
To fix CVE-2021-31840, you need to update McAfee Agent for Windows to version 5.7.3 or later.
You can find more information about CVE-2021-31840 on the official McAfee Knowledge Center website at the following link: [https://kc.mcafee.com/corporate/index?page=content&id=SB10362](https://kc.mcafee.com/corporate/index?page=content&id=SB10362)