漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Sandboxie-Plus: Sandboxie APC Injection Sandbox Escape
Vulnerability Description
Sandboxie-Plus is an open source sandbox-based isolation software for Windows. Prior to 1.17.6, GuiServer::WndHookRegisterSlave in Sandboxie/core/svc/GuiServer.cpp stores attacker-supplied hthread and hproc fields from a GUI_WND_HOOK_REGISTER request without validating that the thread belongs to the sandboxed process or that the function pointer is in the caller address space, and GuiServer::WndHookNotifySlave then calls OpenThread(THREAD_SET_CONTEXT, FALSE, whk->hthread) and QueueUserAPC((PAPCFUNC)whk->hproc, hThread, (ULONG_PTR)req->threadid) as SYSTEM, allowing a sandboxed process to execute arbitrary code in an unsandboxed host process. This issue is fixed in version 1.17.6.
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
Vulnerability Type
访问控制不恰当
Vulnerability Title
sandboxie-plus Sandboxie 权限许可和访问控制问题漏洞
Vulnerability Description
sandboxie-plus Sandboxie是sandboxie-plus团队的一款基于沙盒的隔离软件。 sandboxie-plus Sandboxie 1.17.6之前版本存在权限许可和访问控制问题漏洞,该漏洞源于GuiServer::WndHookRegisterSlave函数在存储来自GUI_WND_HOOK_REGISTER请求的hthread和hproc字段时,未验证线程是否属于沙盒进程或函数指针是否在调用者地址空间,随后GuiServer::WndHookNotifySlave以SYST
CVSS Information
N/A
Vulnerability Type
N/A