Lucene search

K
zdiAnonymousZDI-24-031
HistoryJan 10, 2024 - 12:00 a.m.

Microsoft Windows cldflt Integer Overflow Local Privilege Escalation Vulnerability

2024-01-1000:00:00
Anonymous
www.zerodayinitiative.com
10
vulnerability
microsoft windows
integer overflow
local privilege escalation
cldflt.sys driver
win32 path support
kernel
buffer allocation
arbitrary code execution

7.2 High

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

17.8%

This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. Only systems with long Win32 path support enabled are affected. The specific flaw exists within the cldflt.sys driver. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the kernel.

7.2 High

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

17.8%