Race Condition Flaw in Microsoft Malicious Software Removal Tool
CVE-2015-2418

Currently unrated

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
20 July 2015

Summary

A race condition exists in the Microsoft Malicious Software Removal Tool (MSRT) that can be exploited by local users to gain elevated privileges. This vulnerability occurs prior to version 5.26 and can be triggered through a specially crafted DLL, allowing an attacker to execute arbitrary code with higher user privileges. Proper user access controls and timely updates can help mitigate the risks associated with this vulnerability.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.