CVE-2021-3146

The Dolby Audio X2 (DAX2) API service before 0.8.8.90 on Windows allows local users to gain privileges.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:dolby:audio_x2:*:*:*:*:*:*:*:*
OR cpe:2.3:a:microsoft:exchange_server:2010:sp3:*:*:*:*:*:*
cpe:2.3:a:microsoft:exchange_server:2013:-:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_c\+\+:2005:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_c\+\+:2008:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_c\+\+:2010:-:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:2005:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:2008:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:2010:-:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_.net:2003:sp1:*:*:*:*:*:*

History

14 Apr 2021, 21:04

Type Values Removed Values Added
References (MISC) https://professional.dolby.com/siteassets/pdfs/dolby-dax2-security-advisory-2021-04-07.pdf - (MISC) https://professional.dolby.com/siteassets/pdfs/dolby-dax2-security-advisory-2021-04-07.pdf - Vendor Advisory
CPE cpe:2.3:a:microsoft:visual_c\+\+:2010:-:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:2005:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:2008:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:exchange_server:2010:sp3:*:*:*:*:*:*
cpe:2.3:a:microsoft:exchange_server:2013:-:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_c\+\+:2008:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:2010:-:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_.net:2003:sp1:*:*:*:*:*:*
cpe:2.3:a:dolby:audio_x2:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_c\+\+:2005:sp1:*:*:*:*:*:*
CWE CWE-426
CVSS v2 : unknown
v3 : unknown
v2 : 4.6
v3 : 7.8

08 Apr 2021, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-04-08 20:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-3146

Mitre link : CVE-2021-3146

CVE.ORG link : CVE-2021-3146


JSON object : View

Products Affected

microsoft

  • visual_studio
  • exchange_server
  • visual_studio_.net
  • visual_c\+\+

dolby

  • audio_x2
CWE
CWE-426

Untrusted Search Path