Security
Headlines
HeadlinesLatestCVEs

Tag

#windows

Windows Credential Guard TGT Renewal Information Disclosure

On Windows, the Kerberos ticket renewal process can be used with CG to get an unencrypted TGT session key for a currently authenticated user leading to information disclosure.

Packet Storm
#windows#auth
Windows Credential Guard Non-Constant Time Comparison Information Disclosure

On Windows, the handling of cryptographic data comparison in the CG secure process does not use constant time algorithms resulting in information disclosure.

InTouch Access Anywhere Secure Gateway 2020 R2 Path Traversal

InTouch Access Anywhere Secure Gateway versions 2020 R2 and below suffer from a path traversal vulnerability.

Windows Credential Guard KerbIumGetNtlmSupplementalCredential Information Disclosure

On Windows, the KerbIumGetNtlmSupplementalCredential CG API does not check the encryption key type leading to information disclosure of key material.

Windows Credential Guard KerbIumCreateApReqAuthenticator Key Information Disclosure

On Windows, CG API KerbIumCreateApReqAuthenticator can be used to decrypt arbitrary encrypted Kerberos keys leading to information disclosure.

Windows Credential Guard Kerberos Change Password Privilege Escalation

Windows Credential guard does not prevent using encrypted Kerberos keys to change a user's password leading to elevation of privilege.

Windows Credential Guard Insufficient Checks On Kerberos Encryption Type Use

Windows CG APIs, which take encrypted keys, do not limit what encryption or checksum types can be used with those keys. This can result in using weak encryption algorithms which could be abused to either generate keystreams or brute force encryption keys.

Windows Credential Guard BCrypt Context Use-After-Free Privilege Escalation

On Windows, the method for allocating a context when using the CG BCrypt APIs is insecure leading to use-after-free of secure memory resulting in elevation of privilege.

Windows Credential Guard ASN1 Decoder Type Confusion Privilege Escalation

On Windows, a number of Kerberos CG APIs do not verify the ASN1 PDU type when decoding and encoding Kerberos ASN1 structures leading to type confusion and elevation of privilege.

Windows Kernel Registry Hive Memory Problems

The Windows kernel suffers from multiple memory problems when handling incorrectly formatted security descriptors in registry hives.