Impact
An out‑of‑bounds read in the Windows NTFS driver permits an authorized local user to read restricted memory areas, allowing them to elevate their privileges. The flaw, classified as CWE‑125, manipulates the filesystem code to access memory beyond the bounds of a buffer, enabling an attacker to gain system‑level rights. The CVSS score of 7.8 indicates a high‑severity risk where an authenticated user can potentially compromise the security of the entire system.
Affected Systems
Microsoft Windows 10 versions 1607, 1809, 21H2, and 22H2; Windows 11 editions 23H2, 24H2, 25H2, and 26H1; and Windows Server 2012 through 2025, including both standard and Server Core installations, are impacted. The vulnerability exists in the NTFS file system component across these operating systems.
Risk and Exploitability
The flaw provides local privilege escalation, requiring the attacker to already have authenticated access to the machine. With a CVSS score of 7.8, it poses a significant threat if exploited. The EPSS score is not available, but the vulnerability is not currently listed in the CISA KEV catalog. Attackers would need to execute the exploit from within the target environment, so the risk is confined to the local machine.
OpenCVE Enrichment