Microsoft Windows VBS Enclave Elevation of Privilege Vulnerability

Vulnerability

An elevation of privilege vulnerability has been identified in Windows Virtualization-Based Security (VBS) enclaves. This vulnerability allows an attacker to potentially leak data from the target enclave or execute code within the context of the enclave. The issue affects multiple versions of Windows 11, including 24H2, 23H2, and 22H2, for both x64-based and ARM64-based systems.

Impact

Exploitation of this vulnerability could lead to unauthorized access to data or code execution within the affected enclave.

Remediation

Users can apply the security updates provided in KB5050009 for Windows 11 Version 24H2 and KB5050021 for Windows 11 Versions 23H2 and 22H2. These updates are available through the Microsoft Update Catalog.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
3.3
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.