Junglewise Threat Intelligence

CVE-2026-69309: Microsoft Windows Print Spooler double free privilege escalation

CVE-2026-69309 · Severity: high · CVSS 7 · Published 2026-09-08

Technologies: Microsoft Windows. Vendors: Microsoft.

Executive brief

Windows Print Spooler is a core Windows service that manages printing tasks and document queues across local and network printers. A double-free memory corruption vulnerability in its components allows an authorized local user to crash the spooler service or execute arbitrary code with elevated system privileges, potentially compromising the entire computer.

Technical details

A double-free vulnerability exists in Windows Print Spooler Components due to improper memory management during object cleanup. The vulnerability allows an authenticated local attacker to trigger the double-free condition, leading to heap corruption and potential code execution with SYSTEM privileges. Exploitation requires local access and the ability to interact with print spooler APIs; no network-based exploitation vector is known. An attacker can achieve local privilege escalation from a standard user account to SYSTEM. Microsoft has released patches to address this issue.

Affected products

  • Microsoft Windows

Timeline

  • 2026-09-08: disclosed

References

Related threats