Impact
A stack-based buffer overflow in Windows App Installer allows an authorized local user to gain higher privileges. The flaw is a classic stack corruption bug (CWE-121) that can overwrite return addresses, enabling elevation of privileges on the affected machine.
Affected Systems
Microsoft Windows 10 versions 1607, 1809, 21H2, 22H2; Windows 11 versions 24H2, 25H2, 26H1; Windows Server 2012, 2012 R2, 2016, 2019, 2022, 2025 including Server Core installations.
Risk and Exploitability
The CVSS score of 7.8 classifies the vulnerability as high severity. The EPSS score of less than 1% indicates a very low probability of exploitation at this time, and it is not listed in the CISA KEV catalog. The attack vector is inferred as local; an authorized attacker must have access to the system to trigger the stack overflow and elevate privileges.
OpenCVE Enrichment