First published: Wed Sep 25 2024(Updated: )
Improper verification of cryptographic signature during installation of a VPN driver via the TeamViewer_service.exe component of TeamViewer Remote Clients prior version 15.58.4 for Windows allows an attacker with local unprivileged access on a Windows system to elevate their privileges and install drivers.
Credit: psirt@teamviewer.com
Affected Software | Affected Version | How to fix |
---|---|---|
TeamViewer | <15.58.4 |
Update to the latest version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-7479 is a high severity vulnerability due to improper verification of cryptographic signatures.
To fix CVE-2024-7479, update TeamViewer Remote Clients to version 15.58.4 or later.
CVE-2024-7479 affects users of TeamViewer Remote Clients prior to version 15.58.4 on Windows systems.
CVE-2024-7479 requires local unprivileged access to the Windows system to be exploited.
An attacker can elevate their privileges on a Windows system due to the vulnerability in CVE-2024-7479.