Executive brief
A use-after-free vulnerability in Windows NDIS (network driver interface) allows an authorized attacker on the network to escalate privileges on vulnerable systems. An attacker who has already gained initial network access could exploit this to gain elevated system-level permissions, potentially leading to full system compromise and control.
Technical details
A use-after-free condition exists in the Windows NDIS component, allowing a network-authenticated attacker to trigger memory corruption and escalate privileges. The vulnerability requires the attacker to already have network access or local authentication, but does not require user interaction. Successful exploitation results in privilege escalation to system level.
Affected products
- Microsoft Windows
Timeline
- 2026-09-08: disclosed