Microsoft Workspace Broker Privilege Escalation Vulnerability

Vulnerability

A race condition vulnerability has been identified in the Workspace Broker component, allowing an authorized attacker to elevate privileges locally. This issue arises from concurrent execution using shared resources without proper synchronization.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a user to gain elevated rights and potentially disrupt system stability by exploiting a related use-after-free vulnerability.

Remediation

Users can apply the security updates provided by Microsoft to address this vulnerability. These security updates are available through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5062552, KB5062553, KB5062554, KB5062560, KB5062570, KB5062592, KB5062597, and KB5062557.

Added: Jul 8, 2025, 8:51 PM
Updated: Jul 8, 2025, 8:51 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
7.5
exploitability
2.9
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.