Executive brief
Active Directory Domain Services is a core component that manages user accounts and permissions in corporate networks. A use-after-free vulnerability allows an unauthenticated attacker on the network to execute malicious code with system-level privileges, potentially compromising the entire domain and all connected systems.
Technical details
A use-after-free memory corruption vulnerability exists in Active Directory Domain Services that can be triggered over the network by an unauthenticated attacker. The vulnerability stems from improper memory management in the ADDS component, allowing an attacker to cause code execution at the domain controller level. The attack is network-reachable and does not require prior authentication. Successful exploitation enables complete compromise of Active Directory and all domain-joined systems.
Affected products
- Microsoft Windows <UNKNOWN>
Timeline
- 2026-09-08: disclosed