Junglewise Threat Intelligence

CVE-2026-85877: Microsoft Windows Print Spooler heap-based buffer overflow

CVE-2026-85877 · Severity: high · CVSS 8.8 · Published 2026-09-08

Executive brief

Windows Print Spooler is the system component responsible for managing print jobs and communication with printers across corporate networks. A heap-based buffer overflow vulnerability allows attackers on the network to execute arbitrary code with elevated privileges, potentially leading to complete system compromise, data theft, or deployment of malware.

Technical details

A heap-based buffer overflow exists in Windows Print Spooler components, triggered by improper bounds checking on attacker-controlled input. The vulnerability is reachable over the network without authentication, allowing remote code execution with the privileges of the spooler service (typically SYSTEM). An attacker can craft a malicious network request to overflow a heap buffer and hijack execution flow. Patches are available from Microsoft; apply security updates immediately.

Affected products

  • Microsoft Windows Print Spooler <UNKNOWN>

Timeline

  • 2026-09-08: disclosed

References

Related threats