kernel elevation

  1. Win32k ICOMP Type Confusion: Urgent Patch for Kernel Elevation

    Microsoft has issued a security advisory for a serious Win32k kernel vulnerability — an ICOMP type‑confusion bug that can be triggered by an authorized local user to escalate to SYSTEM — and organizations should treat this as a high‑priority elevation‑of‑privilege (EoP) risk until every affected...
  2. CVE-2025-62467: High Risk ProjFS Privilege Escalation on Windows

    Microsoft and multiple vulnerability trackers recorded CVE-2025-62467 on December 9, 2025 — an integer overflow / wraparound bug in the Windows Projected File System (ProjFS) that can be abused by an authorized local user to gain elevated privileges, and which is currently rated High (CVSS 3.1 =...