CVE-2021-34486: Windows Event Tracing Elevation of Privilege Vulnerability
Published Aug 10, 2021
·Updated
Microsoft Windows Event Tracing contains an unspecified vulnerability which can allow for privilege escalation.
Other sources
Windows Event Tracing Elevation of Privilege Vulnerability
— NVD
Affected Software
36 affected componentsFixes available
Microsoft Windows 10=20h2
Microsoft Windows 10=21h1
Microsoft Windows 10=1809
Microsoft Windows 10=1909
Microsoft Windows 10=2004
Microsoft Windows Server 2016=20h2
Microsoft Windows Server 2016=2004
Microsoft Windows Server 2019
Microsoft Windows
Microsoft Windows 10 1809<10.0.17763.2114
Microsoft Windows 10 1909<10.0.18363.1734
Microsoft Windows 10 2004<10.0.19041.1165
Microsoft Windows 10 20h2<10.0.19042.1165
Microsoft Windows 10 21h1<10.0.19043.1165
Microsoft Windows Server 2004<10.0.19041.1165
Microsoft Windows Server 2019<10.0.17763.2114
Microsoft Windows Server 20h2<10.0.19042.1165
Microsoft Windows Server=20H2
10.0.19042.1165
Microsoft Windows 10=20H2
10.0.19042.1165
Microsoft Windows Server=2004
10.0.19041.1165
Microsoft Windows 10=2004
10.0.19041.1165
Microsoft Windows 10=20H2
10.0.19042.1165
Microsoft Windows 10=21H1
10.0.19043.1165
Microsoft Windows 10=2004
10.0.19041.1165
Microsoft Windows 10=1909
10.0.18363.1734
Microsoft Windows 10=1909
10.0.18363.1734
Microsoft Windows 10=21H1
10.0.19043.1165
Microsoft Windows 10=2004
10.0.19041.1165
Microsoft Windows 10=1909
10.0.18363.1734
Microsoft Windows 10=1809
10.0.17763.2114
Microsoft Windows Server 2019<10.0.17763.2114
10.0.17763.2114
Microsoft Windows Server 2019<10.0.17763.2114
10.0.17763.2114
Microsoft Windows 10=21H1
10.0.19043.1165
Microsoft Windows 10=1809
10.0.17763.2114
Microsoft Windows 10=1809
10.0.17763.2114
Microsoft Windows 10=20H2
10.0.19042.1165
Remediation
Event History
Aug 10, 2021
CVE Published
via Microsoft·07:00 AM
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·02:00 PM
SeverityAffected Software
Updated
via Microsoft·02:00 PM
DescriptionSeverity
Aug 12, 2021
CVE Published
via MITRE·06:11 PM
Data Sourced
via MITRE·06:11 PM
DescriptionSeverity
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Mar 28, 2022
Known Exploited
via CISA·12:00 AM
Frequently Asked Questions
1
What is the severity of CVE-2021-34486?
CVE-2021-34486 is rated as a medium-severity vulnerability that allows for privilege escalation.
2
How do I fix CVE-2021-34486?
To fix CVE-2021-34486, apply the latest security updates provided by Microsoft for affected Windows versions.
3
What are the affected software versions for CVE-2021-34486?
CVE-2021-34486 affects several versions of Microsoft Windows 10 and Windows Server, including versions 1809, 1909, 2004, 20H2, and 21H1.
4
What type of vulnerability is CVE-2021-34486?
CVE-2021-34486 is classified as an elevation of privilege vulnerability within Windows Event Tracing.
5
Who is affected by CVE-2021-34486?
Any user running the affected versions of Microsoft Windows may be at risk of exploitation due to CVE-2021-34486.