Executive brief
Windows Deployment Services is a Microsoft server component used to remotely deploy Windows operating systems across enterprise networks. A use-after-free vulnerability allows an authorized attacker with network access to execute arbitrary code on affected servers, potentially compromising the deployment infrastructure and systems being provisioned.
Technical details
A use-after-free vulnerability exists in Windows Deployment Services, where freed memory is accessed improperly, leading to potential code execution. The vulnerability requires an attacker to be authorized and have network access to the Deployment Services. Exploitation allows remote code execution in the context of the Deployment Services process. Microsoft has released security patches to address this issue.
Affected products
- Microsoft Windows Deployment Services <UNKNOWN>
Timeline
- 2026-09-08: disclosed