← Back

CVE-2017-7293

nvd nist
Published: Apr 26, 2017Modified: May 13, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

The Dolby DAX2 and DAX3 API services are vulnerable to a privilege escalation vulnerability that allows a normal user to get arbitrary system privileges, because these services have .NET code for DCOM. This affects Dolby Audio X2 (DAX2) 1.0, 1.0.1, 1.1, 1.1.1, 1.2, 1.3, 1.3.1, 1.3.2, 1.4, 1.4.1, 1.4.2, 1.4.3, and 1.4.4 and Dolby Audio X3 (DAX3) 1.0 and 1.1. An example affected driver is Realtek Audio Driver 6.0.1.7898 on a Lenovo P50.

Affected (15)

2 products
Dolby Audio X2
Dolby Audio X3
Configuration A
15 vulnerable
Vulnerable SoftwareAffected Versions
Dolby
Version 1.0.1
Version 1.0
Version 1.1.1
Version 1.1
Version 1.2
Version 1.3.1
Version 1.3.2
Version 1.3
Version 1.4.1
Version 1.4.2
Version 1.4.3
Version 1.4.4
Version 1.4
Dolby
Version 1.0
Version 1.1

References (4)

Source: cve@mitre.org
Issue TrackingThird Party Advisory
Source: cve@mitre.org
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry

Timeline

No history available yet.