Impact
A stack-based buffer overflow in the Windows GDI subsystem allows a local attacker with authorized access to escape the current privilege level and execute code with elevated rights, resulting in local privilege escalation. The flaw is a classic stack corruption that exposes the system to arbitrary memory write, and is identified as CWE‑121. According to the CVE description, the vulnerability can compromise system integrity and may allow the attacker to perform operations normally restricted to administrators.
Affected Systems
Affected products include Microsoft Windows 10 versions 1607, 1809, 21H2, 22H2; Windows 11 versions 24H2, 25H2, 26H1; Windows Server 2012 through 2025, including Server Core editions; and Microsoft Office products such as Office 365 for Mac, Office LTSC for Mac 2021, Office LTSC for Mac 2024, and Office for Android.
Risk and Exploitability
The CVSS score of 7.8 indicates a high severity local privilege escalation. The EPSS score of <1% suggests a low probability of exploitation in the wild, and the vulnerability is not listed in the CISA KEV catalog, meaning no confirmed public exploits yet. Because the flaw requires local authorization, the attack surface is limited to systems with legitimate user logins, but the elevated privileges that can be gained present a significant risk if the attacker can access the target machine.
OpenCVE Enrichment