Executive brief
A use-after-free vulnerability in Windows NDIS (Network Driver Interface Specification) allows an authorized attacker to elevate privileges over a network. This flaw affects the core networking driver layer in Windows, potentially enabling attackers with local or network access to gain system-level control of affected computers. Successful exploitation could compromise the entire security posture of affected systems.
Technical details
This vulnerability is a use-after-free flaw in the Windows NDIS kernel component, which manages network driver communication and packet processing. An authorized attacker can exploit this memory corruption issue to escalate privileges, bypassing security boundaries. The attack vector includes network reachability, and exploitation requires the attacker to be in an authorized context. Microsoft has released security updates to address this issue; patches should be applied to all affected Windows systems immediately.
Affected products
- Microsoft Windows <UNKNOWN>
Timeline
- 2026-09-08: disclosed