OpsBuzz

Alert

Microsoft Windows Common Log File System CLFS Driver Heap-Based Buffer Overflow Vulnerability

Microsoft Windows Common Log File System CLFS driver contains a heap-based buffer overflow vulnerability that allows a local attacker to escalate privilege

Security · HIGH
Source: CISA Known Exploited VulnerabilitiesMay 2, 2026, 4:51 PMSecurityhigh

Full content

Microsoft Windows Common Log File System (CLFS) driver contains a heap-based buffer overflow vulnerability that allows a local attacker to escalate privileges.

Vendor: Microsoft

Product: Windows

Due date: 2024-12-31

Known ransomware use: Unknown

Why it matters

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Related alerts

Microsoft Windows Common Log File System CLFS Driver Heap-Based Buffer Overflow Vulnerability | OpsBuzz