Microsoft Windows CiSetFileCache TOCTOU Incomplete Fix
Posted by deepcore on April 18, 2018 – 7:05 am
The fix for CVE-2017-11830 is insufficient to prevent a normal user application adding a cached signing level to an unsigned file by exploiting a TOCTOU in CI leading to circumventing Device Guard policies.
Post a reply
You must be logged in to post a comment.