Microsoft Windows VBS Enclave Elevation of Privilege Vulnerability
Vulnerability
An elevation of privilege vulnerability has been identified in Windows Virtualization-Based Security (VBS) enclaves. This vulnerability allows an attacker to potentially leak data from the target enclave or execute code within the context of the enclave. The issue affects multiple versions of Windows 11, including 24H2, 23H2, and 22H2, for both x64-based and ARM64-based systems.
Impact
Exploitation of this vulnerability could lead to unauthorized access to data or code execution within the affected enclave.
Remediation
Users can apply the security updates provided in KB5050009 for Windows 11 Version 24H2 and KB5050021 for Windows 11 Versions 23H2 and 22H2. These updates are available through the Microsoft Update Catalog.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
