Advisory 71: Microsoft Windows Installer Elevation of Privilege Vulnerability
Release Date: 14th of September 2024
Impact : HIGH / CRITICAL
TLP Rating: Clear
CERT Vanuatu (CERTVU) and the Office of the Chief Information Officer (OGCIO) provide the following advisory.
What is it?
The Windows Installer Elevation of Privilege Vulnerability refers to a security flaw in the Windows Installer service, which can allow an attacker to gain higher-level privileges than they should have, potentially leading to system compromise.
What are the Systems affected?
- Microsoft Windows 10 Version 1809 – 32-bit System and x64-based Systems
- Microsoft Windows Server 2019 – x64-Based System
- Microsoft Windows Server 2019 (Server Core Installation) – x64-Based System
- Microsoft Windows Server 2022 – x64-Based System
- Microsoft Windows 11 Version 21H2 – x64-Based System, ARM64-based System
- Microsoft Windows 10 Version 1607 – 32-bit System and x64-Based System
- Microsoft Windows Server 2016 – x64-Based System
- Microsoft Windows Server 2016 (Server Core Installation) – x64-Based System
- Microsoft Windows Server 2012 – x64-Based System
- Microsoft Windows Server 2012 (Server Core Installation) – x64-Based System
- Microsoft Windows Server 2012 R2 – x64-Based System
- Microsoft Windows Server 2012 R2 (Server Core Installation) – x64-Based System
What this means?
If Vulnerabilities are not addressed, a cyber threat actor could exploit some of these vulnerabilities to take control of an affected system.
Mitigation process
CERTVU Encourages users and administrators to review the below and apply necessary security updates.
References
- https://www.cisa.gov/news-events/alerts/2024/09/10/cisa-adds-four-known-exploited-vulnerabilities-catalog
- https://www.cve.org/CVERecord?id=CVE-2024-38014
- Download advisory (English): Microsoft Windows Installer Elevation of Privilege Vulnerability