TITLE: I-Café client Restriction Bypass SECUNIA ADVISORY ID: SA12101 VERIFY ADVISORY: http://secunia.com/advisories/12101/ CRITICAL: Less critical IMPACT: Security Bypass WHERE: Local system SOFTWARE: I-Café client 2.x http://secunia.com/product/3701/ DESCRIPTION: Lostmon has reported a weakness in I-Café client, allowing malicious users to by disable the software. The problem is that users are able to deactivate the software by using "Ctrl+Alt+Delete", before the system completes the boot sequence, to close the process. It may also be possible to bypass the protection by using various features in other programs and features in the underlying operating system. These issues have been reported to affect I-Café 2.6 on a Windows 98 based system. This may also affect I-Café on other Microsoft Windows releases. SOLUTION: Do not rely on I-Cafe to restrict user privileges. Use newer operating systems with proper user / privilege separation. This is not supported in Windows 95, 98 and Me. PROVIDED AND/OR DISCOVERED BY: Lostmon ORIGINAL ADVISORY: http://lostmon.spymac.net/blog/ ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help everybody keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet@packetstormsecurity.org ----------------------------------------------------------------------