First published: Tue Feb 27 2024(Updated: )
A flaw in the installer for Thales SafeNet Sentinel HASP LDK prior to 9.16 on Windows allows an attacker to escalate their privilege level via local access.
Credit: psirt@thalesgroup.com
Affected Software | Affected Version | How to fix |
---|---|---|
Thales Sentinel LDK | <9.16 | |
All of | ||
Thales Sentinel Hasp LDK | <9.16 | |
Microsoft Windows Operating System |
Upgrade to Thales Sentinel LDK version 9.16.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-0197 has been classified as having a high severity due to its potential to allow privilege escalation.
To mitigate CVE-2024-0197, upgrade the Thales SafeNet Sentinel HASP LDK to version 9.16 or later.
CVE-2024-0197 affects Thales SafeNet Sentinel HASP LDK versions prior to 9.16 on Windows.
Yes, local access is necessary to exploit the vulnerability described in CVE-2024-0197.
CVE-2024-0197 is a privilege escalation vulnerability that can be exploited through an installer flaw.