Executive brief
A security vulnerability exists in the Microsoft Windows Function Discovery Service, which is responsible for locating and managing networked devices and resources. An attacker who already has basic access to a computer could exploit a timing flaw to gain full administrative control over the system. This could allow them to view sensitive data, install malicious software, or disrupt business operations.
Technical details
A race condition vulnerability (CWE-362) exists in the Function Discovery Service (fdwsd.dll) within Microsoft Windows. The flaw stems from improper synchronization when accessing shared resources, which can lead to a use-after-free (CWE-416) condition. An attacker with low-privileged local access can exploit this high-complexity timing issue to execute code with elevated system privileges. Successful exploitation grants the attacker full control over the affected host. Microsoft has released security updates to address this vulnerability via the MSRC Update Guide.
Affected products
- Microsoft Windows
Timeline
- 2026-06-09: advisory: Initial advisory published by Microsoft and NVD.