CVE-2026-20940: Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows Cloud Files Mini Filter Driver allows an authorized attacker to elevate privileges locally.
Other sources
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.4648Patch KB5073457 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.8276Patch KB5073723 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.2.9200.25868Patch KB5073698 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.22968Patch KB5073696 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.7601.28117Patch KB5073699 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.6809Patch KB5073724 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.8783Patch KB5073722 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.23717Patch KB5073700 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.6809Patch KB5073724 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22631.6491Patch KB5073455
Event History
Frequently Asked Questions
What is the severity of CVE-2026-20940?
CVE-2026-20940 is classified as an elevation of privilege vulnerability with high severity.
How do I fix CVE-2026-20940?
To fix CVE-2026-20940, apply the security updates released by Microsoft for your affected Windows version.
What systems are affected by CVE-2026-20940?
CVE-2026-20940 affects various versions of Microsoft Windows, including Windows 10, Windows Server 2019, and Windows Server 2022.
Can CVE-2026-20940 be exploited remotely?
CVE-2026-20940 requires local access to exploit, as it is an elevation of privilege vulnerability.
What is the potential impact of CVE-2026-20940?
The potential impact of CVE-2026-20940 is the ability for an authorized attacker to elevate their privileges on the affected system.