Executive brief
Windows Win32K, a core Windows graphics and window management system component, contains an out-of-bounds memory read vulnerability. An authorized local user can exploit this flaw to escalate their privileges to gain higher-level access on the system, potentially allowing them to bypass security controls or gain administrative access.
Technical details
An out-of-bounds read vulnerability exists in Windows Win32K kernel-mode driver. The vulnerability requires the attacker to have local system access and valid credentials. By crafting malicious input or triggering specific conditions in the Win32K subsystem, an authenticated local user can read memory outside of intended boundaries, which can be leveraged to escalate privileges to a higher privilege level (e.g., from user mode to kernel mode or system). Microsoft has released security updates to address this issue.
Affected products
- Microsoft Windows
Timeline
- 2026-09-08: disclosed