Junglewise Threat Intelligence

CVE-2026-69296: Windows Device Association Service use-after-free privilege escalation

CVE-2026-69296 · Severity: high · CVSS 7.1 · Published 2026-09-08

Technologies: Microsoft Windows. Vendors: Microsoft.

Executive brief

Windows Device Association Service is a system component that manages device pairing and communication with connected devices. A use-after-free vulnerability in this service allows an authorized attacker on the network to execute code with elevated privileges, potentially compromising system security and enabling lateral movement within an organization.

Technical details

The vulnerability is a use-after-free memory corruption flaw in Windows Device Association Service. The affected component improperly manages memory references during device association operations, allowing an attacker with network access and valid credentials to trigger the freed memory access. The vulnerability requires an authorized attacker (authenticated user or adjacent network access), and successful exploitation results in privilege escalation. Microsoft has released security patches to address this issue.

Affected products

  • Microsoft Windows <UNKNOWN>

Timeline

  • 2026-09-08: disclosed

References

Related threats