CVE-2023-36036: Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
Other sources
Microsoft Windows Cloud Files Mini Filter Driver contains a privilege escalation vulnerability that could allow an attacker to gain SYSTEM privileges.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22631.2715Patch KB5032190 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.25398.531Patch KB5032202 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.21668Patch KB5032249 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.22367Patch KB5032248 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.2.9200.24569Patch KB5032247 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.7601.26816Patch KB5032250 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.6452Patch KB5032197 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.20308Patch KB5032199 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.3693Patch KB5032189 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22621.2715Patch KB5032190 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19043.3693Patch KB5032189 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.2113Fixed in 10.0.20348.2091Patch KB5032304 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22000.2600Patch KB5032192 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.5122Patch KB5032196
Event History
Frequently Asked Questions
What is CVE-2023-36036?
CVE-2023-36036 is a privilege escalation vulnerability in the Windows Cloud Files Mini Filter Driver that could allow an attacker to gain SYSTEM privileges.
Which products are affected by CVE-2023-36036?
Microsoft Windows Server 2022, Windows 10, Windows Server 2012 R2, Windows 11, Windows Server 2019, Windows Server 2008, and Windows Server 2012 are affected by CVE-2023-36036.
What is the severity of CVE-2023-36036?
The severity of CVE-2023-36036 is high, with a CVSS score of 7.8.
How can I mitigate the risk of CVE-2023-36036?
To mitigate the risk of CVE-2023-36036, apply the relevant security patches provided by Microsoft for the affected products.
Where can I find more information about CVE-2023-36036?
You can find more information about CVE-2023-36036 on the Microsoft Security Response Center website.