CVE Vulnerabilities

CVE-2019-1214

Published: Sep 11, 2019 | Modified: Oct 29, 2025
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An elevation of privilege vulnerability exists when the Windows Common Log File System (CLFS) driver improperly handles objects in memory, aka Windows Common Log File System Driver Elevation of Privilege Vulnerability.

Affected Software

NameVendorStart VersionEnd Version
Windows_10_1507Microsoft- (including)- (including)
Windows_10_1607Microsoft- (including)- (including)
Windows_10_1703Microsoft- (including)- (including)
Windows_10_1709Microsoft- (including)- (including)
Windows_10_1803Microsoft- (including)- (including)
Windows_10_1809Microsoft- (including)- (including)
Windows_10_1903Microsoft- (including)- (including)
Windows_7Microsoft–sp1 (including)–sp1 (including)
Windows_8.1Microsoft- (including)- (including)
Windows_rt_8.1Microsoft- (including)- (including)
Windows_server_1803Microsoft- (including)- (including)
Windows_server_1903Microsoft- (including)- (including)
Windows_server_2008Microsoft–sp2 (including)–sp2 (including)
Windows_server_2008Microsoftr2-sp1 (including)r2-sp1 (including)
Windows_server_2012Microsoft- (including)- (including)
Windows_server_2012Microsoftr2 (including)r2 (including)
Windows_server_2016Microsoft- (including)- (including)
Windows_server_2019Microsoft- (including)- (including)

References