Acer Quick Access DLL½Ù³Ö·ì϶£¨CVE-2019-18670£©

°ä²¼¹¦·ò 2019-12-21


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


1.²¼¾°ÃèÊö


½üÈÕ£¬£¬£¬£¬£¬£¬£¬£¬SafeBreach LabsÔÚAcer PCµÄԤװÖÃÈí¼þQuick AccessÖз¢ÏÖÒ»¸öDLL½Ù³Ö·ì϶¡£¡£¡£¡£¡£ ¡£¡£¹¥»÷ÕßÄܹ»ÀûÓø÷ì϶½«ËÁÒâδÊðÃûµÄDLL¼ÓÔØµ½ÒÔSYSTEMȨÏÞÔËÐеĹý³ÌÖУ¬£¬£¬£¬£¬£¬£¬£¬´Ó¶øÊµÏÖÓÆ¾ÃÐÔ¡¢Èƹý¼ì²âÒÔ¼°Ä³Ð©Çé¿öϵÄÌØÈ¨ÌáÉý¡£¡£¡£¡£¡£ ¡£¡£


2.·ì϶Áбí


CVE ID  £º     CVE-2019-18670

CVSSÆÀ·Ö£º   ÔÝδÆÀ¶¨

Ó°ÏìÁìÓò£ºAcer Quick Access v2.01.3000 - v.201.3027£»£»£»£»£»£»Acer Quick Access v3.00.3000 - v3.00.3008


3.·ì϶ÏêÇé


Acer Quick AccessÔÚÆô¶¯ºóÒÔNT AUTHORITY\SYSTEMȨÏÞÔËÐÐQAAdminAgent.exe£¬£¬£¬£¬£¬£¬£¬£¬²¢ÊÔͼ´Ó»·¾³±äÁ¿PATHµÄõè¾¶ÖмÓÔØÈý¸öDLLÎļþ£¨atiadlxx.dll¡¢atiadlxy.dllºÍnvapi.dll£©¡£¡£¡£¡£¡£ ¡£¡£ÓÉÓڸùý³ÌûÓжÔDLLÎļþ½øÐÐÊðÃûÑéÖ¤£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÀûÓøùý³Ì¼ÓÔØËÁÒâ¶ñÒâDLL£¨Î´ÊðÃû£©£¬£¬£¬£¬£¬£¬£¬£¬´Ó¶øÊµÏÖÌØÈ¨ÌáÉýºÍÒÔNT AUTHORITY\SYSTEMȨÏÞÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£ ¡£¡£


ÓÉÓÚAcer Quick AccessÊÇ´óÎÞÊýAcer PCÉÏԤװÖõĸ¨ÖúÈí¼þ£¬£¬£¬£¬£¬£¬£¬£¬Òò¶ø¸Ã·ì϶µÄDZÔÚÓ°ÏìÁìÓò½Ï´ó¡£¡£¡£¡£¡£ ¡£¡£


4.½¨¸´½¨Òé


½¨Òé¸üÐÂÖÁ°æ±¾Acer Quick Access v2.01.3028»òv3.00.3009


5.²Î¿¼Á´½Ó


https://safebreach.com/Post/Acer-Quick-Access-DLL-Search-Order-Hijacking-and-Potential-Abuses-CVE-2019-18670

https://nvd.nist.gov/vuln/detail/CVE-2019-18670