PT-2022-5889 · Microsoft · Windows Graphics+1

Marcin Wiazowski

·

Published

2022-12-13

·

Updated

2025-09-04

·

CVE-2022-41121

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows Graphics Component (affected versions not specified)
Description The issue is related to insufficient access restrictions in the Windows Graphics Component, which can be exploited to elevate privileges. This allows an attacker to affect the system. The vulnerability is associated with untrusted pointer dereferences, specifically in the PlgBlt and StretchBlt functions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2022-07305
BIT-POWERSHELL-2022-41121
CVE-2022-41121
ZDI-22-1693
ZDI-22-1694

Affected Products

Windows
Windows Graphics