Impact
A double free condition in the Microsoft Brokering File System allows an attacker with local access to execute code that results in privilege escalation. The flaw is a race condition and double free weakness. Because it requires local execution, it does not pose a remote threat but enables a normal user to gain administrative rights and perform unauthorized actions.
Affected Systems
Microsoft Windows 11 24H2, 25H2, 26H1 and Windows Server 2025, including Server Core installations. All affected editions are listed as impacted, with the flaw affecting ARM64 architectures for Windows 11.
Risk and Exploitability
The CVSS score of 7.0 indicates a moderate to high severity. The EPSS score is unavailable, so exploit probability cannot be quantified. The vulnerability is confined to systems where an attacker has local, authorized access. Attack requires a user with normal privileges to trigger the double free; remote attackers cannot exploit it directly. Detection would involve monitoring for unexpected privilege changes.
OpenCVE Enrichment