Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security > Security Blog

January 5th, 2013, 10:52 GMT · By

BLOG

Zero-Day Vulnerability Uncovered in Symantec’s PGP Whole Disk Encryption

SHARE:

Adjust text size:


Zero-day vulnerability found in Symantec's PGP Whole Disk Encryption Enlarge picture - Zero-day vulnerability found in Symantec's PGP Whole Disk Encryption
On December 25, 2012, someone published the details of what appeared to be a zero-day vulnerability in Symantec’s PGP Whole Disk Encryption product. After analyzing the POC, Symantec’s engineers confirmed that it was in fact a vulnerability.

However, according to Symantec’s Kelvin Kwan, it’s not something that’s easy to exploit.

For one, it only affects systems running Windows XP and Windows 2003 and the attacker needs to be logged in to trigger the exploit.

Furthermore, the exploit can be triggered only if the system enters an error condition.

“Once in this error condition, the exploit could allow an attacker with lower privileges to run some arbitrary code with higher privileges,” Kwan explained.

Symantec will address this issue with the release of a maintenance pack, most likely in early February.

TELL US WHAT YOU THINK:

2,206 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


CSRF Flaws Identified in Online SMS-Sending Services 160by2 and Way2SMS

Zynga Fixes XSS and SQL Injection Vulnerabilities on “With Friends” Website

Clickjacking Flaws Expose Details of Live, Yahoo!, Google and Amazon Users – Video (Updated)

Ruby on Rails 3.2.10 Released to Address SQL Injection Vulnerability

Flaws in NASA’s GSFC Site Allowed Hackers to Bypass Firewalls, Steal Information

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM