CVE-2019-0735: High severity windows 10 vulnerability
Published Apr 9, 2019
·Updated
An elevation of privilege vulnerability exists when the Windows Client Server Run-Time Subsystem (CSRSS) fails to properly handle objects in memory, aka 'Windows CSRSS Elevation of Privilege Vulnerability'.
Affected Software
18 affected components
Microsoft Windows 10
Microsoft Windows 10=1607
Microsoft Windows 10=1703
Microsoft Windows 10=1709
Microsoft Windows 10=1803
Microsoft Windows 10=1809
Microsoft Windows 7=sp1
Microsoft Windows 8.1
Microsoft Windows RT 8.1
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2012
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016
Microsoft Windows Server 2016=1709
Microsoft Windows Server 2016=1803
Microsoft Windows Server 2019
Remediation
Event History
Apr 9, 2019
CVE Published
via MITRE·08:15 PM
Data Sourced
via MITRE·08:15 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-0735?
CVE-2019-0735 has a CVSS score that indicates it is a high severity vulnerability.
2
How do I fix CVE-2019-0735?
To fix CVE-2019-0735, you should apply the latest security updates released by Microsoft for your affected Windows version.
3
Which versions of Windows are affected by CVE-2019-0735?
CVE-2019-0735 affects several versions of Windows including Windows 7, 8.1, 10, and various Windows Server editions.
4
What type of vulnerability is CVE-2019-0735?
CVE-2019-0735 is an elevation of privilege vulnerability within the Windows Client Server Run-Time Subsystem (CSRSS).
5
Can CVE-2019-0735 be exploited remotely?
CVE-2019-0735 requires local access for exploitation, making it less likely to be exploited remotely.