CVE-2019-1215: Microsoft Windows Privilege Escalation Vulnerability
An elevation of privilege vulnerability exists in the way that ws2ifsl.sys (Winsock) handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1253, CVE-2019-1278, CVE-2019-1303.
Other sources
Microsoft Windows contains an unspecified vulnerability due to the way ws2ifsl.sys (Winsock) handles objects in memory, allowing for privilege escalation. Successful exploitation allows an attacker to execute code with elevated privileges.
— CISA
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-1215?
CVE-2019-1215 has a severity rating of Important as it allows an elevation of privilege.
How do I fix CVE-2019-1215?
To fix CVE-2019-1215, apply the latest security updates released by Microsoft for affected Windows versions.
Which operating systems are affected by CVE-2019-1215?
CVE-2019-1215 affects various Windows operating systems including Windows 7, Windows 10, and Windows Server editions.
What type of vulnerability is CVE-2019-1215?
CVE-2019-1215 is classified as an elevation of privilege vulnerability within the Winsock driver.
Can CVE-2019-1215 be exploited remotely?
CVE-2019-1215 requires local access to the system for exploitation, not a remote attack.