Executive brief
Windows Print Spooler is the system component responsible for managing print jobs and communication with printers across corporate networks. A heap-based buffer overflow vulnerability allows attackers on the network to execute arbitrary code with elevated privileges, potentially leading to complete system compromise, data theft, or deployment of malware.
Technical details
A heap-based buffer overflow exists in Windows Print Spooler components, triggered by improper bounds checking on attacker-controlled input. The vulnerability is reachable over the network without authentication, allowing remote code execution with the privileges of the spooler service (typically SYSTEM). An attacker can craft a malicious network request to overflow a heap buffer and hijack execution flow. Patches are available from Microsoft; apply security updates immediately.
Affected products
- Microsoft Windows Print Spooler <UNKNOWN>
Timeline
- 2026-09-08: disclosed