Impact
An out‑of‑bounds read in the Windows HTTP.sys kernel driver allows a local attacker with unauthenticated privileges to read sensitive memory locations that should be protected. The flaw, mapped to CWE‑125, can leak confidential data such as passwords, cryptographic keys or system configuration details. Confidentiality is compromised for information that exists on the local system; system integrity and availability are not affected by this specific read operation.
Affected Systems
Microsoft Windows 11 Versions 24H2, 25H2 and 26H1, along with Windows Server 2025 including the Server Core installation are affected. The vulnerability resides in the HTTP.sys driver used by these operating systems.
Risk and Exploitability
The CVSS score of 6.2 categorizes the issue as moderate severity. The EPSS score is below 1 % and the vulnerability is not listed in CISA’s KEV catalog, indicating a low probability of exploitation in the wild. An attacker must have local access without privileges escalation, and the vulnerability does not impact system availability.
OpenCVE Enrichment