Microsoft Windows Kernel Stack-Based Buffer Overflow Vulnerability
Microsoft · Windows
Date added (CISA)
2022-03-28
Remediation due
2022-04-21
Known ransomware use
Not indicated
Remediation priority
P2 — past CISA due date
Description
Stack-based buffer overflow in the RtlQueryRegistryValues function in win32k.sys in Microsoft Windows allows local users to gain privileges, and bypass the User Account Control (UAC) feature.