CVE-2021-26872: Windows Event Tracing Elevation of Privilege Vulnerability
Windows Event Tracing Elevation of Privilege Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.19968Patch KB5000853 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.2.9200.23298Patch KB5000840 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.21070Patch KB5000856 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.7601.24566Patch KB5000851 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.19968Patch KB5000848 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.18874Patch KB5000807 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.4283Patch KB5000803 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19043.867Patch KB5000802 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.18363.1440Patch KB5000808 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.1817Patch KB5000822 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17134.2087Patch KB5000809
Event History
Frequently Asked Questions
What is the severity of CVE-2021-26872?
CVE-2021-26872 has a severity rating of important which indicates a significant risk of elevation of privilege on affected systems.
How do I fix CVE-2021-26872?
To fix CVE-2021-26872, apply the latest security updates provided by Microsoft for your affected Windows version.
Which Windows versions are affected by CVE-2021-26872?
CVE-2021-26872 affects multiple Windows versions including Windows 10, Windows 7, Windows 8.1, and various Windows Server editions.
What type of vulnerability is CVE-2021-26872?
CVE-2021-26872 is an elevation of privilege vulnerability in the Windows Event Tracing service.
Can CVE-2021-26872 be exploited remotely?
CVE-2021-26872 requires local access to be exploited, meaning remote exploitation is not possible.