Impact
An integer overflow or wraparound bug in Windows Storage Spaces Direct allows an attacker who can physically interact with an affected system to elevate privileges from a non-administrative user to a privileged account. The flaw arises during internal calculations of the Storage Spaces Direct data plane, potentially corrupting memory and allowing unauthorized privilege escalation. The impact scope is local to the affected host, providing the attacker with elevated rights that could enable further exploitation or persistence on the machine.
Affected Systems
The flaw affects Microsoft Windows 10 versions 1607, 1809, 21H2, and 22H2; Microsoft Windows 11 versions 24H2, 25H2, and 26H1; and Microsoft Windows Server editions 2016 (including Server Core), 2019 (including Server Core), 2022, and 2025 (including Server Core). All supported architectures—x86, x64, arm64—are represented among the affected products.
Risk and Exploitability
The CVSS score is 6.8, indicating a moderate severity vulnerability. The EPSS score of less than 1% suggests low observed exploitation probability, and the vulnerability is not currently listed in the CISA Known Exploited Vulnerabilities catalog. The likely attack vector requires physical access to a machine running Storage Spaces Direct; once the integer overflow is triggered, the attacker can gain elevated local privileges. Because the risk depends on threat, remediation is warranted despite the low exploitation likelihood.
OpenCVE Enrichment