Executive brief
Microsoft Standard XPS is a file format handler used in Windows for document processing. An authenticated attacker could exploit an out-of-bounds read vulnerability to access sensitive information stored in the system's memory, potentially exposing credentials or other confidential data.
Technical details
This vulnerability is a classic out-of-bounds read in the Microsoft Standard XPS component, which fails to properly validate array bounds when processing malformed XPS files. The flaw allows an authenticated local attacker to read memory outside the intended buffer, potentially exposing sensitive data. The attack requires local access and a malicious XPS file; remote exploitation is not possible. An attacker could leverage this to disclose system information or credentials. Patches have been released by Microsoft to address this issue.
Affected products
- Microsoft Standard XPS
Timeline
- 2026-09-08: disclosed
- 2026-09-08: advisory: CVE-2026-69345