Heap-based buffer overflow in Windows Telephony Service allows an authorized attacker to elevate privileges locally.