CVE-2019-0797: Microsoft Win32k Privilege Escalation Vulnerability
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-0808.
Other sources
Microsoft Win32k contains a privilege escalation vulnerability when the Win32k component fails to properly handle objects in memory. Successful exploitation allows an attacker to execute code in kernel mode.
— CISA
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-0797?
CVE-2019-0797 has a severity rating of important as it allows elevation of privilege on affected Windows systems.
How do I fix CVE-2019-0797?
To resolve CVE-2019-0797, ensure that you apply the latest security updates released by Microsoft for your Windows operating system.
Which systems are affected by CVE-2019-0797?
CVE-2019-0797 affects Microsoft Windows 10, Windows 8.1, and various versions of Windows Server, including 2012, 2016, and 2019.
What does CVE-2019-0797 exploit?
CVE-2019-0797 exploits an elevation of privilege vulnerability in the Win32k component of Windows.
Is there any workaround for CVE-2019-0797?
As of now, there is no known workaround for CVE-2019-0797 other than applying the provided security updates.