Microsoft Graphics Component Privilege Escalation Vulnerability

Vulnerability

A race condition vulnerability has been identified in the Microsoft Graphics Component, allowing an authorized attacker to locally elevate privileges. This issue arises from concurrent execution using shared resources without proper synchronization.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing an attacker to gain SYSTEM privileges.

Remediation

Users can apply the security update for this vulnerability, available through the Microsoft Update Catalog. For Windows Server 2025 and Windows 11 Version 24H2 (both x64-based and ARM64-based systems), the security update can be downloaded using the KB5065426 or KB5065474 links. Windows Server 2025 (Server Core installation) users can also use the same KB links for the security update.

Added: Sep 18, 2025, 10:17 PM
Updated: Sep 18, 2025, 10:17 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
2.9
remediation
0.0
relevance
0.5
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.