New Search

Microsoft Windows Elevation of Privilege Vulnerability - CVE-2019-1082

oval:org.cisecurity:def:6591

An elevation of privilege vulnerability exists in Microsoft Windows where a certain DLL with Local Service privilege is vulnerable to race planting a customized DLL. An attacker who successfully exploited this vulnerability could potentially elevate privilege to SYSTEM. The update addresses this vulnerability by requiring SYSTEM privileges for a certain DLL.

Family:
windows
Status:
ACCEPTED
Platform(s):
  • Microsoft Windows Server 2008 R2
  • Microsoft Windows 10
  • Microsoft Windows 7
  • Microsoft Windows Server 2016
  • Microsoft Windows 8.1
  • Microsoft Windows Server 2012 R2
  • Microsoft Windows Server 2012
Class:
vulnerability
Reference(s):
  • CVE-2019-1082
  • MSRC-CVE-2019-1082
  • KB4507456
  • KB4507464
  • KB4507457
  • KB4507458
  • KB4507460
Product(s):