Windows Common Log File System Driver Elevation of Privilege Vulnerability
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().
Link | Tags |
---|---|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-31954 | patch vendor advisory |
https://www.zerodayinitiative.com/advisories/ZDI-21-668/ | vdb entry third party advisory |