CVE-2019-1177: Windows Elevation of Privilege Vulnerability
An elevation of privilege vulnerability exists in the way that the rpcss.dll handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1173, CVE-2019-1174, CVE-2019-1175, CVE-2019-1178, CVE-2019-1179, CVE-2019-1180, CVE-2019-1184, CVE-2019-1186.
Other sources
An elevation of privilege vulnerability exists in the way that the rpcss.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions. To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application. The security update addresses the vulnerability by ensuring the rpcss.dll properly handles objects in memory.
— NVD
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-1177?
CVE-2019-1177 has a severity rating of important, indicating that it can allow an attacker to elevate their privileges on the affected system.
How do I fix CVE-2019-1177?
To fix CVE-2019-1177, apply the security updates provided by Microsoft for your version of Windows.
Which versions of Windows are affected by CVE-2019-1177?
CVE-2019-1177 affects multiple versions of Windows including Windows 7, Windows 10 (various versions), Windows 8.1, and several Windows Server editions.
What impact does CVE-2019-1177 have on my system?
If exploited, CVE-2019-1177 allows an attacker to gain elevated privileges, potentially enabling them to execute arbitrary code or make unauthorized changes to the system.
Is there a workaround for CVE-2019-1177?
There are no recommended workarounds for CVE-2019-1177, therefore applying the security update is crucial to protect against this vulnerability.