Jump to content

Google researcher publishes unpatched Windows 8.1 security vulnerability


anuseems

Recommended Posts

A researcher from Google has published a security vulnerability in Windows 8.1 that is said to allow for elevated privileges, and now how to execute the flaw has been made public

From Neowin:

A Google security researcher who goes by the name, Forshaw, has taken the bold step to publish a security vulnerability in Windows 8.1 that is still exploitable. Forshaw makes the defense that he/she waited 90 days after first publication of the vulnerability before letting the world know how to exploit it, and so far, Microsoft has not patched the issue.

The post was made on Google's security research site where it discloses the vulnerability and how to execute the flaw. The vulnerability allows for an elevation of privilege in ahcache.sys/NtApphelpCacheControl and there is a demo application that can launch calc.exe using the method.

http://www.neowin.net/news/google-researcher-publishes-unpatched-windows-81-security-vulnerability

Link to comment
Share on other sites


  • Replies 1
  • Views 1k
  • Created
  • Last Reply

Archived

This topic is now archived and is closed to further replies.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...