Impact
An out-of-bounds read flaw in the Windows NTFS file system permits an attacker with authorized access to elevate privileges across a network. The vulnerability allows the attacker to read beyond the bounds of a data structure, potentially revealing sensitive information or manipulating system state to gain elevated rights. It is classified as CWE-125 and can lead to unauthorized privilege escalation.
Affected Systems
Microsoft Windows 10 versions 1607, 1809, 21H2, 22H2 and Windows 11 versions 23H2, 24H2, 25H2, 26H1, as well as Windows Server 2012 through Server 2025 (including Server Core installations), are all affected.
Risk and Exploitability
This design flaw carries a CVSS score of 8.0, categorized as high severity. The EPSS score is not published, and the vulnerability is not listed in the CISA KEV catalog, indicating no confirmed exploitation yet. Although the description states an authorized attacker can exploit the flaw over a network, the exact attack vector is inferred rather than explicitly detailed. Exploitation would require the attacker to have some level of authenticated access, after which they could trigger the out-of-bounds read to gain higher privileges.
OpenCVE Enrichment