Junglewise Threat Intelligence

CVE-2026-71348: Microsoft Windows Spaceport.sys heap buffer overflow

CVE-2026-71348 · Severity: medium · CVSS 6.8 · Published 2026-09-08

Executive brief

Windows Spaceport.sys is a core system driver that manages hardware resources on Windows systems. A heap buffer overflow vulnerability in this driver allows attackers with physical access to the machine to execute arbitrary code with kernel privileges, potentially compromising system integrity and enabling full system takeover.

Technical details

A heap-based buffer overflow exists in the Windows Spaceport.sys kernel driver that can be triggered through physical access to the system. The vulnerability allows an attacker to overflow a heap buffer and execute arbitrary code in kernel context. Physical attack vector is required as a precondition to exploit this flaw. A patch from Microsoft is expected to be available through standard Windows security updates to fix the buffer overflow and prevent exploitation.

Affected products

  • Microsoft Windows <UNKNOWN>

Timeline

  • 2026-09-08: disclosed

References

Related threats