DLL hijacking vulnerabilities, caused by an uncontrolled search path in the
ToolStick
installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
ToolStick
installer can lead to privilege escalation and arbitrary code execution when running the impacted installer.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-50442 | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the ToolStick installer can lead to privilege escalation and arbitrary code execution when running the impacted installer. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://community.silabs.com/068Vm00000JUQwd |
|
History
Fri, 24 Jan 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 24 Jan 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | DLL hijacking vulnerabilities, caused by an uncontrolled search path in the ToolStick installer can lead to privilege escalation and arbitrary code execution when running the impacted installer. | |
| Title | Uncontrolled search path can lead to DLL hijacking in ToolStick installer | |
| Weaknesses | CWE-427 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Silabs
Published:
Updated: 2025-01-27T18:09:32.354Z
Reserved: 2024-10-03T18:21:41.045Z
Link: CVE-2024-9493
Updated: 2025-01-24T14:54:54.368Z
Status : Received
Published: 2025-01-24T15:15:11.070
Modified: 2025-01-24T15:15:11.070
Link: CVE-2024-9493
No data.
OpenCVE Enrichment
No data.
EUVD