Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C 10.0.17763.0 (custom) before 10.0.17763.7009
affected
10.0.17763.0 (custom) before 10.0.17763.7009
affected
10.0.17763.0 (custom) before 10.0.17763.7009
affected
10.0.20348.0 (custom) before 10.0.20348.3328
affected
10.0.19044.0 (custom) before 10.0.19044.5608
affected
10.0.22621.0 (custom) before 10.0.22621.5039
affected
10.0.19045.0 (custom) before 10.0.19045.5608
affected
10.0.26100.0 (custom) before 10.0.26100.3476
affected
10.0.22631.0 (custom) before 10.0.22631.5039
affected
10.0.22631.0 (custom) before 10.0.22631.5039
affected
10.0.25398.0 (custom) before 10.0.25398.1486
affected
10.0.26100.0 (custom) before 10.0.26100.3476
affected
10.0.26100.0 (custom) before 10.0.26100.3476
affected
10.0.10240.0 (custom) before 10.0.10240.20947
affected
10.0.14393.0 (custom) before 10.0.14393.7876
affected
10.0.14393.0 (custom) before 10.0.14393.7876
affected
10.0.14393.0 (custom) before 10.0.14393.7876
affected
Description
Heap-based buffer overflow in Microsoft Streaming Service allows an authorized attacker to elevate privileges locally.
Problem types
CWE-122: Heap-based Buffer Overflow
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2025-24067 (Kernel Streaming Service Driver Elevation of Privilege Vulnerability)