Executive brief
A security vulnerability exists in the Microsoft Windows Desktop Window Manager, the component responsible for rendering the visual interface of the operating system. An attacker who already has basic access to a computer could exploit this flaw to gain full administrative control over the system. This could allow them to bypass security restrictions, access sensitive data, or install malicious software.
Technical details
A use-after-free vulnerability (CWE-416) exists within the Microsoft Desktop Window Manager (DWM) component of Windows 11. The flaw is triggered when the system attempts to access memory that has already been deallocated, leading to memory corruption. An attacker with low-privileged local access can exploit this condition to execute arbitrary code with elevated system privileges. The attack requires no user interaction and is categorized with a CVSS base score of 7.8. Microsoft has released security updates to address this issue in Windows 11 version 26H1.
Affected products
- Microsoft Windows 11 version 26H1 10.0.28000.0 to 10.0.28000.2525
Timeline
- 2026-07-14: disclosed: Initial publication of CVE-2026-58633 by Microsoft and NVD.
- 2026-07-14: advisory: Microsoft Security Response Center (MSRC) released the update guide.