Executive brief
Windows Search is a system component that indexes and searches files on Windows computers. A use-after-free vulnerability in this component allows an authorized user on the system to gain elevated (administrator) privileges, potentially compromising system security and enabling unauthorized access to sensitive data or system functions.
Technical details
The vulnerability is a use-after-free memory corruption issue in the Microsoft Windows Search component. It requires the attacker to be an authorized local user with at least standard privileges. The flaw allows an authenticated local attacker to craft a malicious action that triggers the use-after-free condition, leading to arbitrary code execution with elevated system privileges. The vulnerability is reachable via local attack vector and does not require user interaction beyond normal system operation. A patch has been released by Microsoft as indicated by the Security Update Guide reference.
Affected products
- Microsoft Windows Search
Timeline
- 2026-09-08: disclosed
- patched: Security updates available via Microsoft Security Update Guide