CVE-2023-29360CISA KEV
Microsoft Streaming Service Untrusted Pointer Dereference Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Streaming Service contains an untrusted pointer dereference vulnerability that allows for privilege escalation, enabling a local attacker to gain SYSTEM privileges.
- Product
- Streaming Service
- Added to KEV
- 29 Feb 2024
- Federal remediation due
- 21 Mar 2024
- Known ransomware use
- Not reported