Home

Description

Windows GDI Elevation of Privilege Vulnerability

PUBLISHED Reserved 2023-06-27 | Published 2023-09-12 | Updated 2025-01-01 | Assigner microsoft




HIGH: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C

Problem types

CWE-416: Use After Free

Product status

10.0.17763.0 (custom) before 10.0.17763.4851
affected

10.0.0 (custom) before 10.0.17763.4851
affected

10.0.17763.0 (custom) before 10.0.17763.4851
affected

10.0.17763.0 (custom) before 10.0.17763.4851
affected

10.0.20348.0 (custom) before 10.0.20348.1970
affected

10.0.0 (custom) before 10.0.22000.2416
affected

10.0.19043.0 (custom) before 10.0.19044.3448
affected

10.0.22621.0 (custom) before 10.0.22621.2283
affected

10.0.19045.0 (custom) before 10.0.19045.3448
affected

10.0.10240.0 (custom) before 10.0.10240.20162
affected

10.0.14393.0 (custom) before 10.0.14393.6252
affected

10.0.14393.0 (custom) before 10.0.14393.6252
affected

10.0.14393.0 (custom) before 10.0.14393.6252
affected

6.0.6003.0 (custom) before 6.0.6003.22264
affected

6.0.6003.0 (custom) before 6.0.6003.22264
affected

6.0.6003.0 (custom) before 6.0.6003.22264
affected

6.1.7601.0 (custom) before 6.1.7601.26713
affected

6.1.7601.0 (custom) before 6.1.7601.26713
affected

6.2.9200.0 (custom) before 6.2.9200.24462
affected

6.2.9200.0 (custom) before 6.2.9200.24462
affected

6.3.9600.0 (custom) before 6.3.9600.21563
affected

6.3.9600.0 (custom) before 6.3.9600.21563
affected

References

msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36804 (Windows GDI Elevation of Privilege Vulnerability) vendor-advisory

cve.org (CVE-2023-36804)

nvd.nist.gov (CVE-2023-36804)

Download JSON