Executive brief
The Windows USB Audio Class driver (usbaudio.sys) contains an integer underflow vulnerability that allows an authorized local user to escalate their privileges on a Windows system. An attacker with basic user-level access could exploit this flaw to gain administrative control, potentially allowing them to install malware, steal data, or compromise the entire system.
Technical details
An integer underflow (wrap or wraparound) vulnerability exists in the Windows USB Audio Class driver (usbaudio.sys). The vulnerability requires the attacker to have local authentication on the system. The flaw allows a local, authenticated attacker to elevate privileges from standard user to administrator level. The exact vulnerable component and attack mechanism involve improper integer handling in the driver code. Microsoft has issued a security patch to address this vulnerability.
Affected products
- Microsoft Windows <UNKNOWN>
Timeline
- 2026-09-08: disclosed