Incorrect conversion between numeric types in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
The product reads data past the end, or before the beginning, of the intended buffer.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Windows_10_1507 | Microsoft | * | 10.0.10240.20947 (excluding) |
Windows_10_1607 | Microsoft | * | 10.0.14393.7876 (excluding) |
Windows_10_1809 | Microsoft | * | 10.0.17763.7009 (excluding) |
Windows_10_21h2 | Microsoft | * | 10.0.19044.5608 (excluding) |
Windows_10_22h2 | Microsoft | * | 10.0.19045.5608 (excluding) |
Windows_11_22h2 | Microsoft | * | 10.0.22621.5039 (excluding) |
Windows_11_23h2 | Microsoft | * | 10.0.22631.5039 (excluding) |
Windows_11_24h2 | Microsoft | * | 10.0.26100.3403 (excluding) |
Windows_11_24h2 | Microsoft | 10.0.26100.3403 (excluding) | 10.0.26100.3476 (excluding) |
Windows_server_2008 | Microsoft | –sp2 (including) | –sp2 (including) |
Windows_server_2008 | Microsoft | r2-sp1 (including) | r2-sp1 (including) |
Windows_server_2012 | Microsoft | * | 6.2.9200.25368 (excluding) |
Windows_server_2012 | Microsoft | r2 (including) | r2 (including) |
Windows_server_2016 | Microsoft | * | 10.0.14393.7876 (excluding) |
Windows_server_2019 | Microsoft | * | 10.0.17763.7009 (excluding) |
Windows_server_2022 | Microsoft | * | 10.0.20348.3270 (excluding) |
Windows_server_2022 | Microsoft | 10.0.20348.3270 (excluding) | 10.0.20348.3328 (excluding) |
Windows_server_2022_23h2 | Microsoft | * | 10.0.25398.1486 (excluding) |
Windows_server_2025 | Microsoft | * | 10.0.26100.3403 (excluding) |
Windows_server_2025 | Microsoft | 10.0.26100.3403 (excluding) | 10.0.26100.3476 (excluding) |