Authored by James Forshaw, Google Security Research

On Windows, the buffer for redirected logon context does not protect against spoofing resulting in arbitrary code execution in the LSA leading to local elevation of privilege.

advisories | CVE-2022-24545, CVE-2022-30165