SB2023091260 - Multiple vulnerabilities in Microsoft Windows GDI
Published: September 12, 2023 Updated: December 18, 2023
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 2 secuirty vulnerabilities.
1) Use-after-free (CVE-ID: CVE-2023-38161)
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a use-after-free error within the UMPDDrvRealizeBrush() method in win32kfull driver. A local user can trigger a use-after-free error and execute arbitrary code on the system with elevated privileges.
2) Use-after-free (CVE-ID: CVE-2023-36804)
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a use-after-free error in UMPDDrvStrokePath, UMPDDrvStrokeAndFillPath, UMPDDrvStrokeAndFillPath, UMPDDrvBitBlt, and UMPDDrvFillPath methods within the win32kfull driver. A local user can trigger a use-after-free error and execute arbitrary code on the system with kernel privileges.
Remediation
Install update from vendor's website.
References
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2023-38161
- https://www.zerodayinitiative.com/advisories/ZDI-23-1445/
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2023-36804
- https://www.zerodayinitiative.com/advisories/ZDI-23-1410/
- https://www.zerodayinitiative.com/advisories/ZDI-23-1409/
- https://www.zerodayinitiative.com/advisories/ZDI-23-1408/
- https://www.zerodayinitiative.com/advisories/ZDI-23-1407/
- https://www.zerodayinitiative.com/advisories/ZDI-23-1406/
- https://www.zerodayinitiative.com/advisories/ZDI-23-1535/
- https://www.zerodayinitiative.com/advisories/ZDI-23-1534/
- https://www.zerodayinitiative.com/advisories/ZDI-23-1587/
- https://www.zerodayinitiative.com/advisories/ZDI-23-1645/
- https://www.zerodayinitiative.com/advisories/ZDI-23-1644/
- https://www.zerodayinitiative.com/advisories/ZDI-23-1643/
- https://www.zerodayinitiative.com/advisories/ZDI-23-1642/
- https://www.zerodayinitiative.com/advisories/ZDI-23-1792/