Link Following Local Privilege Escalation Vulnerability in NortonUtilitiesSvc in Norton Utilities Ultimate Version 24.2.16862.6344 on Windows 10 Pro x64 allows local attackers to escalate privileges and execute arbitrary code in the context of SYSTEM via the creation of a symbolic link and leveraging a TOCTTOU (time-of-check to time-of-use) attack.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-54472 Link Following Local Privilege Escalation Vulnerability in NortonUtilitiesSvc in Norton Utilities Ultimate Version 24.2.16862.6344 on Windows 10 Pro x64 allows local attackers to escalate privileges and execute arbitrary code in the context of SYSTEM via the creation of a symbolic link and leveraging a TOCTTOU (time-of-check to time-of-use) attack.
Fixes

Solution

Upgrade to the below versions, or newer, released 19/Dec/2024 * Norton Utilities 24.3 SU1 - 24.3.17165.6812 * Avast Cleanup 24.3-SU1 - 24.3.17165.19178 * AVG TuneUp 24.3-SU1 - 24.3.17165.10564


Workaround

No workaround given by the vendor.

History

Mon, 13 Oct 2025 10:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-59

Fri, 09 May 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 09 May 2025 15:30:00 +0000

Type Values Removed Values Added
Description Link Following Local Privilege Escalation Vulnerability in NortonUtilitiesSvc in Norton Utilities Ultimate Version 24.2.16862.6344 on Windows 10 Pro x64 allows local attackers to escalate privileges and execute arbitrary code in the context of SYSTEM via the creation of a symbolic link and leveraging a TOCTTOU (time-of-check to time-of-use) attack.
Title Link Following Local Privilege Escalation Vulnerability in NortonUtilitiesSvc in Norton Utilities Ultimate (Also affects Avast CleanUp and AVG TuneUp)
Weaknesses CWE-367
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: NLOK

Published:

Updated: 2025-10-13T09:52:21.123Z

Reserved: 2025-05-06T10:24:53.516Z

Link: CVE-2024-13944

cve-icon Vulnrichment

Updated: 2025-05-09T19:09:03.132Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-05-09T16:15:23.240

Modified: 2025-10-13T10:15:44.547

Link: CVE-2024-13944

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-12T16:01:14Z