Executive brief
A security vulnerability has been identified in the Windows DHCP Client, a core component that manages how computers connect to networks and receive IP addresses. An attacker with local access to a system could exploit this flaw to run unauthorized commands or software. This could lead to a complete takeover of the affected computer, potentially resulting in data theft or the disruption of business operations.
Technical details
A use-after-free vulnerability (CWE-416) exists within the Microsoft Windows DHCP Client. The flaw is triggered when the client improperly handles memory objects during network configuration processes, allowing an attacker to reference memory after it has been freed. An attacker with local access can exploit this without any prior privileges or user interaction to achieve arbitrary code execution. Successful exploitation grants the attacker high-level access to the system, impacting confidentiality, integrity, and availability. Microsoft has released security updates to address this issue.
Affected products
- Microsoft Windows
Timeline
- 2026-07-14: disclosed
- 2026-07-14: advisory