Junglewise Threat Intelligence

CVE-2026-65775: Microsoft Windows Win32K use-after-free privilege escalation

CVE-2026-65775 · Severity: high · CVSS 7.8 · Published 2026-08-11

Technologies: Microsoft Windows. Vendors: Microsoft.

Executive brief

Windows Win32K, a core graphics and windowing component of the Windows operating system, contains a use-after-free vulnerability that allows an authorized local user to escalate their privileges to a higher level of access. An attacker with existing local account access could exploit this flaw to gain administrative or system-level control, potentially enabling installation of malware, data theft, or complete system compromise.

Technical details

This is a use-after-free memory corruption vulnerability in the Windows Win32K kernel subsystem. The vulnerability requires an attacker to already have local authentication/authorization (cannot be exploited remotely), and allows them to execute arbitrary code in kernel context, leading to local privilege escalation. The attack vector is local-only, and the attacker must have an existing user account on the system to trigger the flaw. Microsoft has released security updates to address this vulnerability.

Affected products

  • Microsoft Windows <UNKNOWN>

Timeline

  • 2026-08-11: disclosed

References

Related threats