Windows Edge/IE Isolated Private Namespace Insecure Boundary Descriptor Privilege Escalation
Posted by deepcore on October 20, 2016 – 9:58 pm
The isolated private namespace created by ierutils has an insecure boundary descriptor which allows any non-appcontainer sandbox process (such as chrome) or other users on the same system to gain elevated permissions on the namespace directory which could lead to elevation of privilege.
Post a reply
You must be logged in to post a comment.