The stub component of Absolute Computrace Agent V70.785 executes code from a disk's inter-partition space without requiring a digital signature for that code, which allows attackers to execute code on the BIOS. This allows a privileged local user to achieve persistent control of BIOS behavior, independent of later disk changes.
Advisories
Source ID Title
EUVD EUVD EUVD-2009-5105 The stub component of Absolute Computrace Agent V70.785 executes code from a disk's inter-partition space without requiring a digital signature for that code, which allows attackers to execute code on the BIOS. This allows a privileged local user to achieve persistent control of BIOS behavior, independent of later disk changes.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T07:32:22.865Z

Reserved: 2018-05-11T00:00:00

Link: CVE-2009-5151

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-05-11T19:29:00.267

Modified: 2024-11-21T01:11:16.783

Link: CVE-2009-5151

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.