Overview
- Description
- Microsoft Streaming Service Elevation of Privilege Vulnerability
- Source
- secure@microsoft.com
- NVD status
- Analyzed
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 8.4
- Impact score
- 5.9
- Exploitability score
- 2.5
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
Known exploits
Data from CISA
- Vulnerability name
- Microsoft Streaming Service Untrusted Pointer Dereference Vulnerability
- Exploit added on
- Feb 29, 2024
- Exploit action due
- Mar 21, 2024
- Required action
- Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Weaknesses
- nvd@nist.gov
- NVD-CWE-noinfo
- secure@microsoft.com
- CWE-822
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:*", "vulnerable": true, "matchCriteriaId": "CB89DC1F-2A03-4235-B6FD-EF80FF8B3C1B", "versionEndExcluding": "10.0.14393.5989" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*", "vulnerable": true, "matchCriteriaId": "E5B21E84-205B-4407-90AF-4775E5D2E882", "versionEndExcluding": "10.0.14393.5989" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "92D1F996-A2DF-4163-B49B-F1A340D7E207", "versionEndExcluding": "10.0.17763.4499" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DE69891C-7531-4FC0-9A68-D49E9ADB782E", "versionEndExcluding": "10.0.19044.3086" }, { "criteria": "cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F9CF581A-4B1C-4278-A9DD-1E8D8708C91D", "versionEndExcluding": "10.0.19045.3086" }, { "criteria": "cpe:2.3:o:microsoft:windows_11_21h2:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "15BA332E-5AD9-4586-9322-56658420EC3C", "versionEndExcluding": "10.0.22000.2057" }, { "criteria": "cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "97E9384D-0189-4153-ACE5-E6A698DB6609", "versionEndExcluding": "10.0.22621.1848" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3EB89BF2-200D-41E0-8336-FF6417B49180", "versionEndExcluding": "10.0.14393.5989" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BABFDA5F-B3B7-4444-8C02-57341378971C", "versionEndExcluding": "10.0.17763.4499" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "147B80EA-07E9-4933-BF06-C3328D7FCFC2", "versionEndExcluding": "10.0.20348.1784" } ], "operator": "OR" } ] } ]