Impact
The CVE description indicates a heap‑based buffer overflow in the Windows Print Spooler components that an authorized attacker can exploit to elevate privileges locally. The description does not explicitly specify the attack vector, but it is inferred that the exploit requires local access by a user with existing rights. This overflow can allow the attacker to gain higher authority than the account used for the attack, enabling them to run arbitrary code with elevated permissions.
Affected Systems
The flaw affects Microsoft Windows 10 versions 1809, 21H2, and 22H2; Windows 11 versions 24H2, 25H2, and 26H1; and Windows Server 2019, 2022, and 2025. Server Core installations of Windows Server 2019 and 2025 are also affected.
Risk and Exploitability
The CVSS score of 7.8 and the EPSS score below 1% indicate that exploitation attempts are currently rare or low in probability, and the flaw is not listed in the CISA Known Exploited Vulnerabilities catalog. Based on the description, it is inferred that the attacker must have local access and sufficient privileges to trigger the Print Spooler component; the attacker would need to cause the service to process malformed input, thereby overflowing a heap buffer and gaining privilege escalation.
OpenCVE Enrichment