Executive brief
A flaw in the Push Message Routing Service allows an authorized user to read information from memory that should not be accessible, potentially exposing sensitive data. This vulnerability requires the attacker to already have authenticated access to the system and is classified as a medium-severity information disclosure risk.
Technical details
An out-of-bounds read vulnerability exists in the Push Message Routing Service, where improper bounds checking on memory access allows authenticated attackers to disclose information stored in process memory. The vulnerability requires prior authentication; however, once an attacker has valid credentials, they can trigger the out-of-bounds read to leak data. The attack vector is local, limiting exposure in network-only attack scenarios. Microsoft has issued a security update to address this vulnerability; patches should be applied to affected systems.
Affected products
- Microsoft Push Message Routing Service
Timeline
- 2026-09-08: disclosed