Impact
A use‑after‑free flaw in the Windows kernel permits an attacker who can execute code in an authorized user context to gain administrator‑level privileges. The weakness, classified as CWE‑416, could undermine system integrity and confidentiality by allowing privileged access to protected resources. Based purely on the supplied description, it does not enable persistence or remote code execution, but it does provide local privilege escalation.
Affected Systems
Microsoft Windows 10 versions 1809, 21H2, and 22H2; Windows 11 versions 24H2, 25H2, and 26H1; Windows Server 2019, 2022, and 2025, including Server Core installations. All listed releases are impacted.
Risk and Exploitability
The CVSS score of 4.7 indicates moderate severity. An EPSS score of less than 1% shows a very low likelihood of exploitation. The vulnerability is not listed in the CISA KEV catalog. Exploitation requires local code execution with user or administrative privileges and would proceed via a use‑after‑free scenario in the kernel. The primary threat vector is a local, authorized attacker who can run arbitrary code on the system.
OpenCVE Enrichment