Impact
A local privileged escalation flaw exists in the Windows Kernel where an authorized attacker can dereference an untrusted pointer. This untrusted pointer dereference (CWE-822) enables the attacker to gain elevated privileges on the system, compromising confidentiality, integrity, and availability by allowing the execution of arbitrary code with kernel privileges.
Affected Systems
Affected systems include Microsoft Windows 11 versions 24H2, 25H2, and 26H1, as well as Microsoft Windows Server 2025 and the Server Core installation. The ARM64 architecture is impacted in Windows 11 24H2 and 25H2, while the x64 architecture is affected in Windows 11 26H1.
Risk and Exploitability
The CVSS score of 7.8 indicates a high severity, and the EPSS score of 3% reflects a moderately low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog. The attack vector is local and requires an attacker to already have some level of system access; no additional prerequisites are described. Given the high severity and local nature, the risk remains significant for environments where such privileged attackers could be present.
OpenCVE Enrichment