Executive brief
Windows NTFS is the file system used by all Windows operating systems to store and manage files. An authorized local user can exploit an out-of-bounds read vulnerability in NTFS to gain elevated system privileges, potentially compromising the entire system. This attack requires prior local access but can give attackers complete control over an affected machine.
Technical details
The vulnerability is an out-of-bounds read in the Windows NTFS file system driver. The flaw can be triggered by an authenticated local user through specially crafted file system operations. Exploitation allows privilege escalation from a standard user account to SYSTEM level, bypassing Windows security boundaries. The vulnerability is memory-safety related and does not require user interaction or network connectivity. Microsoft has released patches to address this issue.
Affected products
- Microsoft Windows <UNKNOWN>
Timeline
- 2026-09-08: disclosed