Executive brief
A vulnerability in the Microsoft Windows Software Development Kit (SDK) could allow a user who already has basic access to a computer to gain full administrative control. The Windows SDK is a set of tools used by developers to create applications for the Windows operating system. If exploited, an attacker could bypass security restrictions to access sensitive data, install malicious software, or disrupt business operations on the affected machine.
Technical details
A use-after-free vulnerability exists in the Microsoft Windows SDK, potentially stemming from an underlying integer overflow (CWE-190) that leads to improper memory management (CWE-416). The flaw is exploitable by a locally authenticated attacker with low privileges (PR:L) and requires no user interaction. By successfully exploiting this memory corruption issue, an attacker can execute code with elevated privileges, potentially gaining SYSTEM-level access on the host. Microsoft has released information regarding this vulnerability via the MSRC Update Guide, indicating that security updates are available to address the issue.
Affected products
- Microsoft Windows SDK
Timeline
- 2026-06-09: disclosed
- 2026-06-09: advisory: Published by Microsoft and NVD