Description
Compiler Optimization Removal or Modification of Security-critical Code vulnerability in IntPeParseUnwindData() results in multiple dereferences to the same pointer. If the pointer is located in memory-mapped from the guest space, this may cause a race-condition where the generated code would dereference the same address twice, thus obtaining different values, which may lead to arbitrary code execution. This issue affects: Bitdefender Hypervisor Introspection versions prior to 1.132.2.
No analysis available yet.
Remediation
Vendor Solution
The issue has been fixed in Introcore 1.132.2.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-7291 | Compiler Optimization Removal or Modification of Security-critical Code vulnerability in IntPeParseUnwindData() results in multiple dereferences to the same pointer. If the pointer is located in memory-mapped from the guest space, this may cause a race-condition where the generated code would dereference the same address twice, thus obtaining different values, which may lead to arbitrary code execution. This issue affects: Bitdefender Hypervisor Introspection versions prior to 1.132.2. |
References
History
No history.
Status: PUBLISHED
Assigner: Bitdefender
Published:
Updated: 2024-09-16T19:40:28.161Z
Reserved: 2020-06-25T00:00:00.000Z
Link: CVE-2020-15294
No data.
Status : Modified
Published: 2020-12-17T17:15:12.987
Modified: 2024-11-21T05:05:15.983
Link: CVE-2020-15294
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD