Vulnerabilities > CVE-2021-23886 - Improper Handling of Exceptional Conditions vulnerability in Mcafee Data Loss Prevention Endpoint

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
mcafee
CWE-755

Summary

Denial of Service vulnerability in McAfee Data Loss Prevention (DLP) Endpoint for Windows prior to 11.6.100 allows a local, low privileged, attacker to cause a BSoD through suspending a process, modifying the processes memory and restarting it. This is triggered by the hdlphook driver reading invalid memory.

Vulnerable Configurations

Part Description Count
Application
Mcafee
1