Impact
A heap-based buffer overflow in the Windows NTFS file system permits an authorized attacker to gain higher privileges when interacting with the file system over a network. The flaw originates from a buffer overflow coupled with an out‑of‑bounds read, allowing the attacker to corrupt memory and execute arbitrary code with elevated rights. The impact is a direct escalation of privileges, potentially enabling full control of the affected machine if the attacker can run the code remotely through a network share.
Affected Systems
The vulnerability affects multiple Microsoft Windows releases: Windows 10 versions 1809, 21H2, and 22H2; Windows 11 versions 23H2, 24H2, 25H2, 26H1, and 23H2 duplicates; Windows Server 2019 (Standard and Server Core), Windows Server 2022, and Windows Server 2025 (Standard and Server Core). All listed x86, x64, and ARM64 architectures listed in the CPEs are impacted.
Risk and Exploitability
The CVSS score of 8.0 indicates high severity. EPSS is not available, but the vulnerability is listed as not in the CISA KEV catalog, suggesting no publicly known exploit yet. The attack vector is inferred to be network based, requiring the attacker to have authenticated access to exploit the privilege escalation. Because the attacker must be authorized, an internal threat actor or compromised user account with limited privileges could exploit this flaw to elevate to administrator or system level, compromising confidentiality, integrity, and availability of the system.
OpenCVE Enrichment