Executive brief
The Windows Print Spooler is a system service that manages print jobs on Windows computers. A heap-based buffer overflow vulnerability in this component allows an authorized local user to execute arbitrary code and take complete control of the system. This could lead to data theft, malware installation, or system compromise.
Technical details
A heap-based buffer overflow exists in the Windows Print Spooler Components due to insufficient bounds checking when processing print job data. The vulnerability requires local authentication and user interaction (print job submission), but once triggered, allows arbitrary code execution with system privileges. An authenticated attacker can exploit this flaw to escalate privileges from a standard user to system-level access, potentially compromising the entire machine. A patch is available from Microsoft.
Affected products
- Microsoft Windows Print Spooler
Timeline
- 2026-09-08: disclosed