FAQ
What privileges could be gained by an attacker who successfully exploited this vulnerability? An attacker who successfully exploited this vulnerability could gain SYSTEM privileges.
Heap-based buffer overflow in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.