CVE-2019-1069HighCVSS 7.8
Task Scheduler Elevation of Privilege Vulnerability
🔗 CVE IDs covered (1)
📋 Description
An elevation of privilege vulnerability exists in the way the Task Scheduler Service validates certain file operations. An attacker who successfully exploited the vulnerability could gain elevated privileges on a victim system. To exploit the vulnerability, an attacker would require unprivileged code execution on a victim system. The security update addresses the vulnerability by correctly validating file operations.
🎯 Affected products24
- Windows 10 Version 1607 for 32-bit Systems
- Windows 10 Version 1607 for x64-based Systems
- Windows 10 Version 1703 for 32-bit Systems
- Windows 10 Version 1703 for x64-based Systems
- Windows 10 Version 1709 for 32-bit Systems
- Windows 10 Version 1709 for ARM64-based Systems
- Windows 10 Version 1709 for x64-based Systems
- Windows 10 Version 1803 for 32-bit Systems
- Windows 10 Version 1803 for ARM64-based Systems
- Windows 10 Version 1803 for x64-based Systems
- Windows 10 Version 1809 for 32-bit Systems
- Windows 10 Version 1809 for ARM64-based Systems
- Windows 10 Version 1809 for x64-based Systems
- Windows 10 Version 1903 for 32-bit Systems
- Windows 10 Version 1903 for ARM64-based Systems
- Windows 10 Version 1903 for x64-based Systems
- Windows 10 for 32-bit Systems
- Windows 10 for x64-based Systems
- Windows Server 2016
- Windows Server 2016 (Server Core installation)
- Windows Server 2019
- Windows Server 2019 (Server Core installation)
- Windows Server, version 1803 (Server Core Installation)
- Windows Server, version 1903 (Server Core installation)
✅ Remediation
KB4503279 (Security Update) KB4503286 (Security Update) KB4503327 (Security Update) KB4503284 (Security Update) KB4503293 (Security Update) KB4503291 (Security Update) KB4503267 (Security Update)
🔗 References (16)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2019-1069
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4503279
- referencehttps://support.microsoft.com/help/4503279
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4503286
- referencehttps://support.microsoft.com/help/4503286
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4503327
- referencehttps://support.microsoft.com/help/4503327
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4503284
- referencehttps://support.microsoft.com/help/4503284
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4503293
- referencehttps://support.microsoft.com/help/4503293
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4503291
- referencehttps://support.microsoft.com/help/4503291
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4503267
- referencehttps://support.microsoft.com/help/4503267
- referencehttps://support.microsoft.com/en-us/help/4503267