Executive brief
Windows DHCP Server is a critical network service that assigns IP addresses to devices on a network. A buffer over-read vulnerability allows an authorized attacker on an adjacent network to cause the DHCP service to crash, disrupting network connectivity for affected devices and requiring manual intervention to restore service.
Technical details
A buffer over-read vulnerability exists in the Windows DHCP Server component that processes DHCP requests. The vulnerability allows an authorized attacker with access to an adjacent network to send a specially crafted DHCP packet that triggers an out-of-bounds read operation. The attacker must be authorized (authenticated) and network-adjacent to exploit this flaw. Successful exploitation results in denial of service through service crash. A security patch from Microsoft is available.
Affected products
- Microsoft Windows <UNKNOWN>
Timeline
- 2026-09-08: disclosed
- patched: Security update available from Microsoft