Impact
The vulnerability is a heap-based buffer overflow in the Windows Partition Management Driver (CWE-122). An authorized local attacker can trigger the overflow and elevate privileges to SYSTEM, allowing the execution of arbitrary code on the affected machine.
Affected Systems
Affected are Microsoft Windows 10 versions 1607, 1809, 21H2, and 22H2; Windows 11 versions 23H2, 24H2, 25H2, and 26H1; and Windows Server 2012, 2012 R2, 2016, 2019, 2022, and 2025, including Server Core installations.
Risk and Exploitability
With a CVSS score of 7, this vulnerability is considered high severity. EPSS is not reported, so the likelihood of exploitation remains unknown, and it is not listed in CISA's KEV catalog. The attack vector is local, requiring an authorized attacker. If exploited, the attacker can elevate privileges to SYSTEM, enabling the execution of arbitrary code with full administrative rights on the affected machine.
OpenCVE Enrichment