Executive brief
Windows Win32K, a core graphics and windowing component of the Windows operating system, contains a use-after-free vulnerability that allows an authorized local user to escalate their privileges to a higher level of access. An attacker with existing local account access could exploit this flaw to gain administrative or system-level control, potentially enabling installation of malware, data theft, or complete system compromise.
Technical details
This is a use-after-free memory corruption vulnerability in the Windows Win32K kernel subsystem. The vulnerability requires an attacker to already have local authentication/authorization (cannot be exploited remotely), and allows them to execute arbitrary code in kernel context, leading to local privilege escalation. The attack vector is local-only, and the attacker must have an existing user account on the system to trigger the flaw. Microsoft has released security updates to address this vulnerability.
Affected products
- Microsoft Windows <UNKNOWN>
Timeline
- 2026-08-11: disclosed