CVE-2021-4199

Incorrect Permission Assignment for Critical Resource vulnerability in the crash handling component BDReinit.exe as used in Bitdefender Total Security, Internet Security, Antivirus Plus, Endpoint Security Tools for Windows allows a remote attacker to escalate local privileges to SYSTEM. This issue affects: Bitdefender Total Security versions prior to 26.0.10.45. Bitdefender Internet Security versions prior to 26.0.10.45. Bitdefender Antivirus Plus versions prior to 26.0.10.45. Bitdefender Endpoint Security Tools for Windows versions prior to 7.4.3.146.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:bitdefender:antivirus_plus:*:*:*:*:*:*:*:*
cpe:2.3:a:bitdefender:endpoint_security_tools:*:*:*:*:*:windows:*:*
cpe:2.3:a:bitdefender:internet_security:*:*:*:*:*:*:*:*
cpe:2.3:a:bitdefender:total_security:*:*:*:*:*:*:*:*

History

21 Nov 2024, 06:37

Type Values Removed Values Added
References () https://www.bitdefender.com/support/security-advisories/incorrect-permission-assignment-for-critical-resource-vulnerability-in-bdreinit-exe-va-10017/ - Vendor Advisory () https://www.bitdefender.com/support/security-advisories/incorrect-permission-assignment-for-critical-resource-vulnerability-in-bdreinit-exe-va-10017/ - Vendor Advisory
References () https://www.zerodayinitiative.com/advisories/ZDI-22-484/ - Third Party Advisory () https://www.zerodayinitiative.com/advisories/ZDI-22-484/ - Third Party Advisory

Information

Published : 2022-03-07 12:15

Updated : 2024-11-21 06:37


NVD link : CVE-2021-4199

Mitre link : CVE-2021-4199

CVE.ORG link : CVE-2021-4199


JSON object : View

Products Affected

bitdefender

  • antivirus_plus
  • total_security
  • endpoint_security_tools
  • internet_security
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource