This high-severity local privilege escalation vulnerability (CVE-2026-50491, CVSS 7.0) stems from an out-of-bounds read within the Windows Code Integrity DLL (ci.dll), which an authorized local attacker can exploit to gain elevated privileges. The source article provides limited technical detail, and no specific affected version ranges, fixed versions, or workarounds are provided.
Out-of-bounds read in Code Integrity DLL (ci.dll) allows an authorized attacker to elevate privileges locally.