…“The vulnerable driver ships with every version of Windows, up to and including Server 2025,” Adam Barnett, lead software engineer at Rapid7, said. “Maybe your fax modem uses a different chipset, and so you don’t need the Agere driver? Perhaps you’ve simply discovered email? Tough luck. Your PC is still vulnerable, and a local attacker with a minimally privileged account can elevate to administrator.”…
It’s interesting that this supposedly goes back to Windows 3.1?
lechekaflan@lemmy.world 5 months ago
muusemuuse@sh.itjust.works 5 months ago
Nope. You don’t need to be using the driver. The article explains that an attacker call upon it and exploit it simply because it is there.