Junglewise Threat Intelligence

CVE-2026-69611: Microsoft Virtual Hard Disk Miniport Driver use-after-free privilege escalation

CVE-2026-69611 · Severity: high · CVSS 7 · Published 2026-09-08

Vendors: Microsoft.

Executive brief

The Virtual Hard Disk (VHD) Miniport Driver is a Windows component that manages virtual disk storage. A use-after-free vulnerability allows an authorized local user to execute arbitrary code with elevated privileges, potentially gaining full control of the system.

Technical details

A use-after-free vulnerability exists in the Virtual Hard Disk (VHD) Miniport Driver, a kernel-mode component responsible for VHD device management. The vulnerability allows an authenticated local attacker to trigger memory access after it has been freed, enabling arbitrary code execution with kernel-level privileges. The attack requires local system access and valid credentials; remote exploitation is not possible. Successful exploitation grants the attacker privileges to execute arbitrary kernel-mode code and achieve complete system compromise. A patch is expected to be available through Microsoft's security update process.

Affected products

  • Microsoft Virtual Hard Disk Miniport Driver

Timeline

  • 2026-09-08: disclosed

References