Impact
A DLL hijacking vulnerability in Rufus 4.6.2208 and earlier versions allows an attacker loading and executing a malicious DLL with escalated privileges (since the executable has been granted higher privileges during the time of launch) due to the ability to inject a malicious cfgmgr32.dll in the same directory as the executable and have it side load automatically. Versions 4.7 and later are not affected by this vulnerability.
Patches
This is fixed in 74dfa49, which is included in version 4.7 that was released on 2025.04.09.
Credits
This vulnerability was discovered by @EmperialX working with @Shauryae1337 and reported by @EmperialX.
Impact
A DLL hijacking vulnerability in Rufus 4.6.2208 and earlier versions allows an attacker loading and executing a malicious DLL with escalated privileges (since the executable has been granted higher privileges during the time of launch) due to the ability to inject a malicious
cfgmgr32.dllin the same directory as the executable and have it side load automatically. Versions 4.7 and later are not affected by this vulnerability.Patches
This is fixed in 74dfa49, which is included in version 4.7 that was released on 2025.04.09.
Credits
This vulnerability was discovered by @EmperialX working with @Shauryae1337 and reported by @EmperialX.