CVE-2023-35379HighCVSS 7.8
Reliability Analysis Metrics Calculation Engine (RACEng) Elevation of Privilege Vulnerability
🔗 CVE IDs covered (1)
📋 Description
What privileges could be gained by an attacker who successfully exploited the vulnerability? An attacker who successfully exploited this vulnerability could gain specific limited SYSTEM privileges.
🎯 Affected products2
- Windows Server 2008 R2 for x64-based Systems Service Pack 1
- Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)
✅ Remediation
KB5029296 (Monthly Rollup) — fixed build 6.1.7601.26664 KB5029307 (Security Only) — fixed build 6.1.7601.26664
🔗 References (5)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-35379
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5029296
- referencehttps://support.microsoft.com/help/5029296
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5029307
- referencehttps://support.microsoft.com/help/5029307