CVE-2009-5152

Severity CVSS v4.0:
Pending analysis
Type:
CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Publication date:
11/05/2018
Last modified:
21/11/2024

Description

Absolute Computrace Agent, as distributed on certain Dell Inspiron systems through 2009, has a race condition with the Dell Client Configuration Utility (DCCU), which allows privileged local users to change Computrace Agent's activation/deactivation status to the factory default via a crafted TaskResult.xml file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:absolute:computrace_agent:-:*:*:*:*:*:*:*