Description


Concurrent execution using shared resource with improper synchronization ('race condition') in Tablet Windows User Interface (TWINUI) Subsystem allows an authorized attacker to elevate privileges locally.

Weaknesses



CWE-362

CVSS impact metrics


CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

7.8 · High

Information


Source identifier

[email protected]

Vulnerability status

Analyzed

Published

2026-01-13T18:16:10.153Z

44 hours ago

Last modified

2026-01-15T13:16:27.777Z

1 hour ago