Executive brief
Windows Spaceport.sys is a low-level driver component that manages system resources and device access. An authenticated attacker with local system access could exploit an out-of-bounds memory read to disclose sensitive information from kernel memory, potentially revealing credentials or system configuration data needed for further attacks.
Technical details
This vulnerability is an out-of-bounds read in the Windows Spaceport.sys kernel driver that allows information disclosure. The flaw requires local access and valid user credentials to trigger, limiting the attack surface to authenticated users already on the system. Exploitation could allow an attacker to read adjacent kernel memory regions and leak sensitive information such as authentication tokens, cryptographic material, or system internals. Microsoft has released patches to address this issue; systems should apply the latest Windows security updates.
Affected products
- Microsoft Windows <UNKNOWN>
Timeline
- 2026-09-08: disclosed
- 2026-09-08: advisory