CVE-2019-1168: Microsoft Windows p2pimsvc Elevation of Privilege Vulnerability
An elevation of privilege exists in the p2pimsvc service where an attacker who successfully exploited the vulnerability could run arbitrary code with elevated privileges. To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted application that could exploit the vulnerability and take control of an affected system. The update addresses this vulnerability by correcting how the p2pimsvc service handles processes these requests.
Other sources
An elevation of privilege exists in the p2pimsvc service where an attacker who successfully exploited the vulnerability could run arbitrary code with elevated privileges.To exploit this vulnerability, an attacker would first have to log on to the system, aka 'Microsoft Windows p2pimsvc Elevation of Privilege Vulnerability'.
Affected Software
Remediation
Event History
Frequently Asked Questions
Does exploitation require prior access to the target system?
Yes. An attacker must first log on to the system and then run a specially crafted application locally; the vulnerability is not described as remotely exploitable.
What level of impact can successful exploitation have?
A successful attacker could run arbitrary code with elevated privileges and take control of the affected system. The CVSS vector indicates high impact to confidentiality, integrity, and availability.
Which systems should be prioritized for remediation?
Prioritize affected Windows systems where untrusted or lower-privileged users can log on and execute applications. The listed affected products include Windows 7, Windows 8.1, Windows 10, Windows RT 8.1, and Windows Server 2008, 2012, 2016, and 2019.
Is a fix available?
Yes. A patch is available, and it corrects how the p2pimsvc service handles process requests.