Executive brief
Windows DCOM Server is a core Windows system component that enables distributed object communication across systems and applications. A heap buffer overflow vulnerability allows an authorized local user to execute arbitrary code with elevated privileges, potentially leading to full system compromise.
Technical details
A heap-based buffer overflow exists in the Windows DCOM Server component, allowing an authenticated local attacker to trigger the vulnerability and escalate privileges. The vulnerability requires local access and existing user authorization to exploit. An attacker can achieve arbitrary code execution with SYSTEM or administrator privileges. A patch is available from Microsoft's Security Response Center (MSRC).
Affected products
- Microsoft Windows <UNKNOWN>
Timeline
- 2026-09-08: disclosed