Executive brief
The Windows Partition Management Driver contains a heap-based buffer overflow that could allow a local attacker with administrative or system-level privileges to execute arbitrary code and escalate their access level. This vulnerability requires existing elevated access to trigger, but successful exploitation could result in complete system compromise or unauthorized control of storage operations.
Technical details
A heap-based buffer overflow vulnerability exists in the Windows Partition Management Driver due to improper bounds checking when processing partitioning operations. The vulnerability can be triggered by a local attacker with existing elevated privileges (such as SYSTEM or Administrator) to corrupt heap memory, leading to arbitrary code execution and privilege escalation. The attack vector is local; network exploitation is not possible. Patches are available from Microsoft Security Updates.
Affected products
- Microsoft Windows <UNKNOWN>
Timeline
- 2026-09-08: disclosed