Executive brief
Windows Bluetooth Service, a core operating system component managing wireless device connectivity, contains a use-after-free memory vulnerability. An authorized attacker with local system access can exploit this flaw to elevate their privileges and gain full system control, potentially compromising all data and systems accessible to the device.
Technical details
A use-after-free vulnerability exists in the Windows Bluetooth Service component, where memory is dereferenced after being freed under certain conditions. The vulnerability requires an authorized attacker with local system access; remote exploitation is not possible. Successful exploitation allows the attacker to execute arbitrary code with elevated privileges, achieving privilege escalation from an authorized user account to system-level access. A patch is available via Microsoft Security Response Center (MSRC) and should be applied immediately.
Affected products
- Microsoft Windows <UNKNOWN>
Timeline
- 2026-09-08: disclosed
- 2026-09-08: advisory