Executive brief
Windows Services for NFS is a Microsoft component that enables Windows systems to communicate with NFS (Network File System) servers. A heap buffer overflow in its ONCRPC XDR driver allows an authorized local attacker to execute code with elevated privileges, potentially compromising the affected system's security and enabling full system takeover.
Technical details
A heap-based buffer overflow exists in the ONCRPC XDR driver component of Windows Services for NFS. An authorized attacker with local access can trigger the buffer overflow to corrupt heap memory and achieve privilege escalation. The vulnerability requires prior system access but does not require network connectivity. A fix is available through Microsoft security updates. This is a local privilege escalation vector that can be chained with other vulnerabilities to broaden attack impact.
Affected products
- Microsoft Windows Services for NFS <unknown>
Timeline
- 2026-09-08: disclosed