PT-2023-1014 · Microsoft+1 · Windows+1
CVSS v3.1
8.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows (affected versions not specified)
Description
An elevation of privilege issue exists in the Windows kernel Advanced Local Procedure Call (ALPC) subsystem. The flaw is caused by a use-after-free condition where an ALPC message retains a pointer to a thread, known as
WaitingThread, after the thread has been freed. This creates a dangling pointer that the kernel may later dereference, potentially allowing an attacker to execute arbitrary code with SYSTEM privileges. This issue has been exploited in the wild to facilitate sandbox escapes from the Chromium browser.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
LPE
RCE
DoS
Use After Free
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Chromium
Windows