Junglewise Threat Intelligence

CVE-2026-34332: Microsoft Windows use after free in Kernel-Mode Drivers

CVE-2026-34332 · Severity: high · CVSS 8 · Published 2026-05-12

Vendors: Microsoft.

Executive brief

A security vulnerability exists in the core software drivers that manage the Windows operating system. An authorized user on the network could exploit this flaw to run unauthorized code with high-level system privileges. This could lead to a complete takeover of the affected system, potentially resulting in data theft or significant operational disruption.

Technical details

A use-after-free (CWE-416) vulnerability exists within Microsoft Windows Kernel-Mode Drivers. The flaw is triggered when the system attempts to use memory that has already been deallocated, which an attacker can leverage to gain remote code execution. The attack vector is network-based and requires low-level authentication (PR:L) and minimal user interaction (UI:R). Successful exploitation allows for a full compromise of confidentiality, integrity, and availability (C:H/I:H/A:H) at the kernel level. Microsoft has released security updates to address this issue.

Affected products

  • Microsoft Windows Kernel-Mode Drivers

Timeline

  • 2026-05-12: disclosed
  • 2026-05-12: advisory: Microsoft released the security update guide for this vulnerability.

References

Related threats