Executive brief
A privilege escalation vulnerability exists in the Microsoft Windows Kernel that allows a local attacker to gain elevated permissions. The vulnerability has been observed being exploited in the wild and is included in CISA's Known Exploited Vulnerabilities Catalog.
Affected products
- Microsoft Windows 10 up to (excluding) 10.0.10240.19003
- Microsoft Windows 10 Version 1607 up to (excluding) 10.0.14393.4530
- Microsoft Windows 10 Version 1809 up to (excluding) 10.0.17763.2061
- Microsoft Windows 10 Version 1909 up to (excluding) 10.0.18363.1679
- Microsoft Windows 10 Version 2004 up to (excluding) 10.0.19041.1110
- Microsoft Windows 10 Version 20H2 up to (excluding) 10.0.19042.1110
- Microsoft Windows 10 Version 21H1 up to (excluding) 10.0.19043.1110
- Microsoft Windows 8.1
- Microsoft Windows RT 8.1
- Microsoft Windows Server 2004 up to (excluding) 10.0.19041.1110
- Microsoft Windows Server 2008
- Microsoft Windows Server 2012 R2
- Microsoft Windows Server 2016 up to (excluding) 10.0.14393.4530
- Microsoft Windows Server 2019 up to (excluding) 10.0.17763.2061
- Microsoft Windows Server 20H2 up to (excluding) 10.0.19042.1110
Timeline
- 2021-07-16: disclosed: Initial analysis by NIST
- 2021-11-03: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
- 2021-11-03: advisory: Published date reported in advisory summary