Summary
A vulnerability has been reported in the Suite Setups built with prior versions of InstallShield 2023 R2. This vulnerability may allow Denial of Service (DoS) escalation when a low privilege user moves secured temporary folder and creates a Symlink Junction during suite setup installation.
Description
There are two secured temp directories created during the suite installation. In general, a user with standard rights cannot create/modify the contents of this secured directory. However, it was found that a certain move operation violates this condition using the standard credentials. This may allow a low privilege user to move this temp directory to another location during suite setup installation and create a Symbolic Junction (pointing to windows system files) with the same folder name.
After the installation, the suite setup process deletes the temp folders along with the Directory Junction and its target contents (including Windows system files). This may affect the Windows operating system initialization once the system is rebooted and may result in Denial of Service (DOS).
Fix Version and Resolution
This issue has been fixed in InstallShield 2023 R2 release. You can download the release from your Product and License Center (PLC) or from 'Update Product' option within InstallShield IDE.
Note: You must have a community login with PLC access or the old product installed to download the InstallShield 2023 R2 release.
Additional Information
Related Articles
The Suite Project Dialog Image and Icon Resources Will Disappear Automatically when We Leave the Setup Idle. 6Number of Views CVE-2023-45853: Zlib Vulnerability mpact on InstallShield 10Number of Views Suite Project Build Error -7239 3Number of Views Include Billboards in the Suite Project Type 4Number of Views Automation Interface: How to Change the Package GUID of all the Packages Included in a Suite Project 4Number of Views
Hi, I am Reva - Ask me anything.
No new updates
Thanks for the feedback!
Your feedback has been saved.Rate this response:
Add Additional feedback ( Optional )
Are you sure you want to cancel
the case creation?
Are you sure you want to cancel the case creation?
Are you sure you want to close this case
| Products | Region | Phone Numbers |
|---|---|---|
| FlexNet Operations FlexNet Embedded FlexNet Publisher FlexNet Connect FlexNet Code Insight InstallAnywhere InstallShield |
North America * |
+1 630-332-2513 (toll) +1 877-279-2853 (toll-free in North America) |
| Europe * |
+44 1925 944367 (toll) +44 800 047 8642 (toll-free in Europe) |
|
| Japan * | +81 3-4540-5335 (select option 2) | |
| Australia * |
+61 3 9895 2177 +61 1800 560 603 (toll-free in Australia) |
|
|
Usage Intelligence (formerly
Revulytics) Compliance Intelligence |
Please use the Case Portal to submit your support ticket or reach out to your Revenera contact. | |
Case id: 00001065
Activity: Status change: 2 hours ago