Description
Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.
Published: 2026-07-14
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A use‑after‑free flaw in the Windows DirectX graphics kernel enables an attacker with local authorization to gain elevated privileges on the system. The vulnerability allows the attacker to execute arbitrary code with kernel‑level access, potentially compromising confidentiality, integrity, and availability of the affected machine. The underlying weakness is a memory‑management error that is classified as CWE-416.

Affected Systems

Microsoft Windows 11 versions 24H2, 25H2, and 26H1, as well as Microsoft Windows Server 2025, including Server Core installations, are impacted by this exploit. The vulnerability is present across ARM64 and x64 builds of the listed operating systems.

Risk and Exploitability

The CVSS score of 7.8 indicates a high severity for local privilege escalation. The EPSS score of less than 1 % suggests that the likelihood of this vulnerability being exploited in the wild is currently very low, and it is not included in the CISA KEV catalog. The likely attack path requires an authorized user who can run code on the target machine, which is typically an application or driver with elevated privileges. An attacker would trigger the use‑after‑free condition to execute code in kernel mode. While the vulnerability remains unlisted as a known exploited vulnerability, users should treat it as a legitimate security risk due to its potential impact.

Generated by OpenCVE AI on July 31, 2026 at 08:15 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the official Microsoft update that addresses CVE-2026-50353 available from the Microsoft Security Advisory website
  • Configure your update infrastructure (WSUS, SCCM, or Group Policy) to install the Windows 11 and Windows Server 2025 patches containing the fix as soon as they are released
  • If an immediate patch cannot be applied, isolate the affected hosts from external networks and restrict local application execution rights to limit the attack surface

Generated by OpenCVE AI on July 31, 2026 at 08:15 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 15 Jul 2026 12:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 14 Jul 2026 17:45:00 +0000

Type Values Removed Values Added
Description Use after free in Windows DirectX allows an authorized attacker to elevate privileges locally.
Title DirectX Graphics Kernel Elevation of Privilege Vulnerability
First Time appeared Microsoft
Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
Microsoft windows Server 2025
Weaknesses CWE-416
CPEs cpe:2.3:o:microsoft:windows_11_24H2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_25H2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_26H1:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*
Vendors & Products Microsoft
Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
Microsoft windows Server 2025
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Windows 11 24h2 Windows 11 25h2 Windows 11 26h1 Windows Server 2025
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-08-03T22:55:13.714Z

Reserved: 2026-06-04T18:48:26.815Z

Link: CVE-2026-50353

cve-icon Vulnrichment

Updated: 2026-07-15T11:10:01.647Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-31T08:30:03Z

Weaknesses