Карточка уязвимости
Характеристики уязвимости
Уровень опасности
Оценка CVSS
Производитель ПО
Наименование ПО
Microsoft Windows
(1.7.1 x86 Windows 8.1, 1.8.0.1 x86 Windows 10, 1.8.0.3 x86 Windows 10 (1607), 1.8.0.7 x86 Windows 10 (1809), 1.8.0.9 x86 Windows 10 (1909), 1.8.0.91 x86 Windows 10 (2004), 1.8.0.92 x86 Windows 10 (20H2), 1.8.0.93 x86 Windows 10 (21H1), 2.8.1 x64 Windows 8.1, 2.8.2.1 x64 Windows 10, 2.8.2.3 x64 Windows 10 (1607), 2.8.2.7 x64 Windows 10 (1809), 2.8.2.9 x64 Windows 10 (1909), 2.8.2.91 x64 Windows 10 (2004), 2.8.2.92 x64 Windows 10 (20H2), 2.8.2.93 x64 Windows 10 (21H1), 2.9.0 x64 Windows 2012 Server Full, 2.9.1 x64 Windows 2012 Server Core, 2.9.2 x64 Windows 2012 R2 Full, 2.9.3 x64 Windows 2012 R2 Core, 2.91.0 x64 Windows 2016 Server Full, 2.91.1 x64 Windows 2016 Server Core, 2.91.2 x64 Windows 2016 Server Nano, 2.94.0 x64 Windows 2019 Server Full, 2.94.1 x64 Windows 2019 Server Core, 2.94.2 x64 Windows 2019 Server Nano, 2.97.1 x64 Windows 2019 (2004) Server Core, 2.97.2 x64 Windows 2019 (2004) Server Nano, 2.98.1 x64 Windows 2019 (20H2) Server Core, 2.98.2 x64 Windows 2019 (20H2) Server Nano)
Microsoft Updates
(KB5005030, KB5005031, KB5005033, KB5005040, KB5005043, KB5005076, KB5005094, KB5005099, KB5005106)
Описание
Повышение привилегий, связанное с аватаром учетной записи пользователя Windows, позволяет злоумышленникам оказать воздействие на систему.
Как исправить
Используйте рекомендации производителя:
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26426
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26426
Ссылки
Источник: CVE
Наименование: CVE-2021-26426
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-26426
Наименование: CVE-2021-26426
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-26426