Impact
The vulnerability is an out-of-bounds read in the Windows Partition Management Driver, allowing a locally authenticated attacker to read memory that should not be accessible. This flaw can expose sensitive data such as system information or other memory contents to the attacker, compromising confidentiality but not allowing code execution or denial of service.
Affected Systems
Microsoft Windows operating systems are affected, including Windows 10 versions 1607, 1809, 21H2, and 22H2; Windows 11 versions 23H2, 24H2, 25H2, and 26H1; and Windows Server releases 2012, 2012 R2, 2016, 2019, 2022 and 2025. All listed editions and architectures (x86, x64, arm64, Server Core installations) are vulnerable.
Risk and Exploitability
The CVSS score of 5.5 indicates a moderate impact. Because the flaw requires local authentication and access to the partition management driver, it is limited to users who run with sufficient privileges on the affected machine. The EPSS score is not available, and the vulnerability is not listed in CISA’s KEV catalog, suggesting that exploitation has not yet been observed in the wild. Consequently, the risk is moderate but confined to a local attacker who may already have legitimate access or have escalated privileges on the system.
OpenCVE Enrichment