Quantcast
Channel: No Results Found ≈ Packet Storm
Viewing all articles
Browse latest Browse all 87

SetNamedSecurityInfo() Ignores / Destroys Protected DACLs / SACLs

$
0
0
With Windows 2000 Microsoft introduced the inheritance of access rights and new Win32-API functions like SetNamedSecurityInfo() which handle the inheritance. SetNamedSecurityInfo() but has a serious bug: it applies inheritable ACEs from a PARENT object to a target object even if it must not do so, indicated by the flags SE_DACL_PROTECTED and/or SE_SACL_PROTECTED in the security descriptor of the target object.

Viewing all articles
Browse latest Browse all 87

Trending Articles