Vulnerability Description
Multiple security flaws exists in InvProtectDrv.sys which is a part of Invincea Dell Protected Workspace 5.1.1-22303. Weak restrictions on the driver communication channel and additional insufficient checks allow any application to turn off some of the protection mechanisms provided by the Invincea product.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sophos | Invincea Dell Protected Workspace | 5.1.1-22303 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/99360Broken LinkThird Party AdvisoryVDB Entry
- https://www.talosintelligence.com/vulnerability_reports/TALOS-2016-0246ExploitTechnical DescriptionThird Party Advisory
- http://www.securityfocus.com/bid/99360Broken LinkThird Party AdvisoryVDB Entry
- https://www.talosintelligence.com/vulnerability_reports/TALOS-2016-0246ExploitTechnical DescriptionThird Party Advisory
FAQ
What is CVE-2016-8732?
CVE-2016-8732 is a vulnerability with a CVSS score of 7.8 (HIGH). Multiple security flaws exists in InvProtectDrv.sys which is a part of Invincea Dell Protected Workspace 5.1.1-22303. Weak restrictions on the driver communication channel and additional insufficient ...
How severe is CVE-2016-8732?
CVE-2016-8732 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-8732?
Check the references section above for vendor advisories and patch information. Affected products include: Sophos Invincea Dell Protected Workspace.