HIGH
CVE-2021-40449
CVSS
7.8
KEV
Description
Win32k Elevation of Privilege Vulnerability
Summary dbcve.org
CVE-2021-40449 is a Win32k elevation of privilege vulnerability in the Windows kernel graphics subsystem (win32k.sys). The flaw allows a local attacker to escalate privileges from a low-privileged user context to kernel-level access, potentially executing arbitrary code with system privileges.
Mitigation
Apply the Microsoft security updates for CVE-2021-40449 from the relevant monthly patch release (September 2021). For unpatched systems, limit user privileges and monitor for suspicious kernel-mode activity as compensating measures.
Weakness (CWE)
CWE-416
Use After Free
EPSS Score
74.13%
Probability of exploitation in next 30 days
99.5th percentile
References
http://packetstormsecurity.com/files/164926/Win32k-NtGdiResetDC-Use-After-Free-Local-Privilege-Escalation.html
Exploit, Third Party Advisory, VDB Entry
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-40449
Patch, Vendor Advisory
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-40449
US Government Resource
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.