The stub component of Absolute Computrace Agent V70.785 executes code from a disk's inter-partition space without requiring a digital signature for that code, which allows attackers to execute code on the BIOS. This allows a privileged local user to achieve persistent control of BIOS behavior, independent of later disk changes.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-05-11T19:00:00

Updated: 2018-05-11T19:57:02

Reserved: 2018-05-11T00:00:00


Link: CVE-2009-5151

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-05-11T19:29:00.267

Modified: 2018-06-14T13:04:45.573


Link: CVE-2009-5151

JSON object: View

cve-icon Redhat Information

No data.

CWE