Impact
A heap-based buffer overflow within the Windows Print Spooler components permits an unauthorized attacker to execute code through a network connection. The flaw allows arbitrary code execution by exploiting memory corruption during spooler processing.
Affected Systems
Microsoft Windows 11 Version 24H2 is the affected product. No other vendors or products are listed as vulnerable.
Risk and Exploitability
The CVSS score is 8.8, indicating high severity. The EPSS score is not available, so the current likelihood of exploitation is uncertain. The vulnerability is not listed in CISA’s KEV catalog. The attack vector is inferred to be remote over the network, targeting the Print Spooler service.
OpenCVE Enrichment