7

CVE-2023-28229

Warnung

Windows CNG Key Isolation Service Elevation of Privilege Vulnerability

Windows CNG Key Isolation Service Elevation of Privilege Vulnerability
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 10 1507 Version < 10.0.10240.19869
Microsoft ≫ Windows 10 1607 Version < 10.0.14393.5850
Microsoft ≫ Windows 10 1809 Version < 10.0.17763.4252
Microsoft ≫ Windows 10 20h2 Version < 10.0.19042.2846
Microsoft ≫ Windows 10 21h2 Version < 10.0.19044.2846
Microsoft ≫ Windows 10 22h2 Version < 10.0.19045.2846
Microsoft ≫ Windows 11 21h2 Version < 10.0.22000.1817
Microsoft ≫ Windows 11 22h2 Version < 10.0.22621.1555
Microsoft ≫ Windows Server 2008 Version - Update sp2
Microsoft ≫ Windows Server 2008 Version r2 Update sp1 HwPlatform x64

04.10.2023: CISA Known Exploited Vulnerabilities (KEV) Catalog

Microsoft Windows CNG Key Isolation Service Privilege Escalation Vulnerability

Schwachstelle

Microsoft Windows Cryptographic Next Generation (CNG) Key Isolation Service contains an unspecified vulnerability that allows an attacker to gain specific limited SYSTEM privileges.

Beschreibung

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Erforderliche Maßnahmen
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.77% 0.76
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Microsoft 7 1 5.9
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-591 Sensitive Data Storage in Improperly Locked Memory

The product stores sensitive data in memory that is not locked, or that has been incorrectly locked, which might cause the memory to be written to swap files on disk by the virtual memory manager. This can make the data more accessible to external actors.

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-28229
Patch
Vendor Advisory
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2023-28229
US Government Resource