There is a security flaw that occurs when the Windows Kernel API does not handle registry objects in memory correctly. If this vulnerability is exploited, an attacker could gain higher privileges on a specific system. This exploit can be performed by a locally authenticated attacker who runs a specifically designed application. To address this vulnerability, the security update ensures that the Windows Kernel API handles objects in memory correctly.