Microsoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability
Microsoft · Windows
Date added (CISA)
2025-05-13
Remediation due
2025-06-03
Known ransomware use
Not indicated
Remediation priority
P2 — past CISA due date
Description
Microsoft Windows Common Log File System (CLFS) Driver contains a heap-based buffer overflow vulnerability that allows an authorized attacker to elevate privileges locally.