Lucene search

K
zdiAnonymousZDI-23-1405
HistorySep 12, 2023 - 12:00 a.m.

Microsoft Windows CLFS Out-Of-Bounds Read Information Disclosure Vulnerability

2023-09-1200:00:00
Anonymous
www.zerodayinitiative.com
17
microsoft windows
clfs driver
local attackers
sensitive information
out-of-bounds read
vulnerability
low-privileged code
crafted blf file
buffer overflow
privilege escalation
arbitrary code
kernel context

EPSS

0.001

Percentile

18.5%

This vulnerability allows local attackers to disclose sensitive information on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the clfs.sys driver. A crafted BLF file can trigger can trigger a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel.