Junglewise Threat Intelligence

CVE-2019-1458: Microsoft Win32k Privilege Escalation Vulnerability

CVE-2019-1458 · Severity: critical · CVSS 7.8 · Exploited in the wild · Published 2022-01-10

Technologies: Microsoft Windows Server 2008, Microsoft Windows 8.1, Microsoft Windows 10, Microsoft Windows Server 2016, Microsoft Win32K, Microsoft Windows 7, Microsoft Windows Server 2012, Microsoft Windows Rt 8.1. Vendors: Microsoft.

Executive brief

An elevation of privilege vulnerability exists in the Windows Win32k component due to improper handling of objects in memory. A local attacker could exploit this to gain elevated system privileges.

Affected products

  • Microsoft Windows 7 SP1
  • Microsoft Windows 8.1
  • Microsoft Windows RT 8.1
  • Microsoft Windows 10 1507, 1607
  • Microsoft Windows Server 2008 SP2, R2 SP1
  • Microsoft Windows Server 2012 R2
  • Microsoft Windows Server 2016

Timeline

  • 2019-12-11: disclosed: Initial analysis by NIST
  • 2022-01-10: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
  • 2022-01-10: exploited: Confirmed exploited in the wild per CISA KEV catalog entry date

Related threats