Impact
This vulnerability is a double free in the Windows Routing and Remote Access Service (RRAS). The flaw permits an authorized local attacker to manipulate memory, resulting in arbitrary code execution and privilege elevation. Attackers can gain higher privileges on the affected host, potentially compromising the entire system.
Affected Systems
The issue affects a range of Microsoft Windows client and server operating systems, including Windows 10 from version 1607 through 22H2, Windows 11 from 23H2 through 26H1, and Windows Server 2012 through 2025 (both full installations and Server Core). Any system that has the RRAS role installed and is running these versions is vulnerable.
Risk and Exploitability
The CVSS score of 7.0 indicates a medium to high severity for local privilege escalation. EPSS data is unavailable, but the vulnerability is not listed in the CISA KEV catalog, suggesting no widespread exploitation reported yet. Nonetheless, an attacker with authorized local access can exploit this flaw to take full control of the affected machine. The attack requires access to the machine with a user account that can start or modify RRAS components, making exploitation unlikely to be feasible over a network without additional access.
OpenCVE Enrichment