Description
Compiler Optimization Removal or Modification of Security-critical Code vulnerability in IntPeParseUnwindData() results in multiple dereferences to the same pointer. If the pointer is located in memory-mapped from the guest space, this may cause a race-condition where the generated code would dereference the same address twice, thus obtaining different values, which may lead to arbitrary code execution. This issue affects: Bitdefender Hypervisor Introspection versions prior to 1.132.2.
No analysis available yet.
Remediation
Vendor Solution
The issue has been fixed in Introcore 1.132.2.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-7291 | Compiler Optimization Removal or Modification of Security-critical Code vulnerability in IntPeParseUnwindData() results in multiple dereferences to the same pointer. If the pointer is located in memory-mapped from the guest space, this may cause a race-condition where the generated code would dereference the same address twice, thus obtaining different values, which may lead to arbitrary code execution. This issue affects: Bitdefender Hypervisor Introspection versions prior to 1.132.2. |
References
History
No history.
Status: PUBLISHED
Assigner: Bitdefender
Published:
Updated: 2024-09-16T19:40:28.161Z
Reserved: 2020-06-25T00:00:00.000Z
Link: CVE-2020-15294
No data.
Status : Modified
Published: 2020-12-17T17:15:12.987
Modified: 2026-06-17T02:56:25.427
Link: CVE-2020-15294
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-733
Compiler Optimization Removal or Modification of Security-critical Code
- NVD-CWE-Other
EUVD