Windows Vista Forums
Vista Forums Home Join Vista Forums Donate Vista Tutorials Tags

Welcome to Vista Forums we are your forum to discuss Windows Vista x64 and x86 systems. Whether you need help or just want to post an idea you have on Vista, this is the forum for you.
Register at Vista forums...the world biggest Windows Vista resource Join Vista Forums Now

Go Back   Vista Forums > Vista Newsgroups > Vista security

Two versions of Vista on same HD - Security Issue

Update your Vista Drivers Update Your Drivers Now!!
Closed Thread
 
Thread Tools Display Modes
Old 10-09-2006   #1 (permalink)
Tim Starid
Guest


 

Two versions of Vista on same HD - Security Issue

Allo,

I have two different builds of Vista on the same drive, separate partitions.
I noticed that if I'm running one and want to access data on the other, I can
just navigate to that drive, and only run into a warning when I attempt to
access a user's private foulder. I can click the box and the warnign goes
away, giving me access to the user's files. Since I'm not the administrator
of that partition/user group shouldnt it block me? I dont have any encryption
set up yet, but I'd think since vista does this in it's own instance,
connecting to a different instance of vista should require you to be in the
same group/permissions set.

My System SpecsSystem Spec
Old 10-09-2006   #2 (permalink)
Jimmy Brush
Guest


 

Re: Two versions of Vista on same HD - Security Issue

Hello,

The reason this is possible is due to the way Windows handles well-known
group permissions. The well know groups in Windows, such as Users,
Administrators, etc, are recognized on the permissions for the files/folder
regardless of what installation of Windows created the files/folder.

So, if you have a file that was created in one installation of Windows that
gave Administrators full control over it, then logged in to a DIFFERENT
installation of Windows as an administrator, you would have full control
over that file, even though it was created in a different installation of
Windows.

The same thing is happening in your case - you are accessing a file/folder
that you SPECIFICALLY do not have access to, but "Administrators" do - so
the system asks you if you want to invoke your administrator powers and give
yourself access to the folder.

You are correct in that this does pose a slight security risk - however, the
benefits far outweight the risks. If this did not work the way I described,
you would not be able to dual boot between instances of Windows effectively,
as you would be denied read AND write access to ALL files made from any
other instance of Windows.

Also, keep in mind that if one has physical access to the hard disk, one can
bypass any file-based security mechanism with the right tool - so the actual
security of the files of another installation of windows when another
operating system is running on that computer is pretty poor, regardless of
what permissions are in place.

--
- JB

Windows Vista Support Faq
http://www.jimmah.com/vista/

My System SpecsSystem Spec
Closed Thread

Thread Tools
Display Modes



Similar Threads
Thread Thread Starter Forum Replies Last Post
Researchers at Black Hat Reveal Major Vista Security Issue tonymazz System Security 8 08-12-2008 09:58 AM
Vista - Security Issue - 2 Admin profile on 1 computer marilynstlouis Vista account administration 0 05-20-2008 08:33 PM
Folder Versions has Non Existent List in Previous Versions Tab Sid Vista performance & maintenance 1 02-12-2008 01:55 AM
Security issue with malware on Vista bypasses UAC and sends out SPAM Grant - CNW Vista security 12 01-21-2008 10:56 PM
OEM versions and Full Versions of Vista Robert Katz Vista installation & setup 9 08-17-2007 11:13 AM


Vistax64.com is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows Vista", the Start Orb, and related materials are trademarks of Microsoft Corp.
© Designer Media 2005-2008

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51