Junglewise Threat Intelligence

CVE-2026-69365: Microsoft Local Security Authority Server out-of-bounds read

CVE-2026-69365 · Severity: high · CVSS 8 · Published 2026-09-08

Technologies: Microsoft Windows. Vendors: Microsoft.

Executive brief

The Local Security Authority Server (lsasrv) is a critical Windows system component responsible for authentication and security policy enforcement. An authenticated attacker can trigger an out-of-bounds memory read flaw in this component to escalate their privileges across the network, potentially gaining administrative access to affected systems.

Technical details

This vulnerability is an out-of-bounds read in Microsoft's Local Security Authority Server (lsasrv), a core Windows security subsystem. The flaw allows an authenticated attacker with network access to exploit improper memory access and escalate privileges. The attack requires prior authentication but enables full privilege escalation, allowing an attacker to gain SYSTEM-level access. While no public exploitation in the wild has been confirmed, patches are expected from Microsoft through their security update process.

Affected products

  • Microsoft Windows

Timeline

  • 2026-09-08: disclosed

References

Related threats