• just_another_person@lemmy.world
    link
    fedilink
    English
    arrow-up
    7
    arrow-down
    6
    ·
    edit-2
    3 days ago

    This person is getting to be fucking annoying.

    The title is definitely not as described, only applies to Windows (I think), and won’t work without a permissions escalation.

    The only reason it’s classified as a CVE is because they requested it be such.

    There are no payload attacks proven here, or PoC attack code. This person has been posting pretty basic “hacks” for a few years, and makes a mountain out of an anthill every damn time.

    🙄 Ugh

    • priapus@piefed.social
      link
      fedilink
      English
      arrow-up
      2
      ·
      2 days ago

      only applies to Windows (I think)

      Well yeah, its a vulnerability in the windows software. Nothing they said implied otherwise.

      and won’t work without a permissions escalation.

      I dont think thats true, could you explain why that would be? This article mentioned no need for a permissions escalation. In fact it seems that the RCE is automatically run as administrator by the driver process.

      • Cyberwolf@feddit.org
        link
        fedilink
        English
        arrow-up
        2
        ·
        1 day ago

        I love how on Lemmy Windows is not immediately assumed to be the default OS, lol.

        Are we all Linux users?

        • mic_check_one_two@lemmy.dbzer0.com
          link
          fedilink
          English
          arrow-up
          2
          ·
          edit-2
          15 hours ago

          Yeah, Lemmy has a VERY large Linux user base, which means Windows discussions tend to get mocked or dismissed. But the reality is that Windows is still the dominant OS for the vast majority of users, by leaps and bounds. Linux runs the world’s infrastructure, but Windows is what the average user boots up every day.

          “This exploit only works on the average user’s OS. And it only works if the user clicks the “yes” button to escalate permissions, which they have been conditioned to always do without question. Obviously this isn’t an exploit to worry about.”

    • ryannathans@aussie.zone
      link
      fedilink
      English
      arrow-up
      7
      ·
      3 days ago

      How could it apply to any other operating system than Windows? Pre installed drivers, in a pre installed OS? They probably don’t even write drivers for other OS

    • LupusBlackfur@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      3 days ago

      This person is getting to be fucking annoying.

      🤷‍♂️ Sounds like a job for the “block user” feature… 🤔

    • JackbyDev@programming.dev
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      1
      ·
      2 days ago

      “This only applies to the most widely used OS and won’t work without someone clicking grant admin permissions which most people probably do blindly.”

      🙄 Ugh