Microsoft Windows HTTP.sys Privilege Escalation Vulnerability
Vulnerability
A time-of-check time-of-use (TOCTOU) race condition vulnerability has been identified in Windows HTTP.sys. This vulnerability allows an authorized attacker to locally elevate privileges. The issue arises from a race condition where the timing of events can be manipulated, potentially leading to unauthorized access or control.
Impact
Exploitation of this vulnerability could allow an attacker to gain SYSTEM privileges.
Remediation
Users can download the security update for this vulnerability via the Microsoft Update Catalog. Security update KB5075904 is available for Windows Server 2019 and Windows 10 versions 22H2 and 21H2. For Windows Server 2022, security update KB5075906 is available. Windows 11 users can download the security update KB5077179 for versions 26H1 and 24H2. For Windows Server 2025, security update KB5075899 is available.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
