Lucene search

K
kasperskyKaspersky LabKLA10360
HistoryOct 20, 2010 - 12:00 a.m.

KLA10360 LPE vulnerability in TeamSpeak

2010-10-2000:00:00
Kaspersky Lab
threats.kaspersky.com
26

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.8

Confidence

High

EPSS

0

Percentile

5.1%

An improper library path was found in TeamSpeak. By exploiting this vulnerability malicious users can gain privileges. This vulnerability can be exploited locally via a library hijack.

Original advisories

Related products

TeamSpeak-Client

CVE list

CVE-2010-3383 high

Solution

Update to latest version

Impacts

  • PE

Privilege escalation. Exploitation of vulnerabilities with this impact can lead to performing by abuser actions, which are normally disallowed for current role.

Affected Products

  • TeamSpeak 2.0.32

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.8

Confidence

High

EPSS

0

Percentile

5.1%