Description
Out-of-bounds read in Microsoft Trace Data Helper allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Local Privilege Escalation
Action: Patch ASAP
AI Analysis

Impact

Microsoft Trace Data Helper contains an out‑of‑bounds read that can be triggered by an authorized local user. The flaw allows the attacker to read beyond the intended memory boundary, potentially enabling escalation of privileges on the affected system. This vulnerability is a classic memory corruption issue identified as CWE‑125.

Affected Systems

Affected by variants of Windows 11 (V24H2, V25H2 and V26H1) as well as Windows Server 2025, including the Server Core installation. The affected architectures are Arm64 for the Windows 11 V24H2 and V25H2 releases and x64 for V26H1.

Risk and Exploitability

The Microsoft security advisory assigns a CVSS score of 7.8, indicating high severity. EPSS data is not available, so the exact exploitation likelihood cannot be quantified, and the vulnerability is not listed in the CISA KEV catalogue. The attack vector is local; an attacker must have authenticated or otherwise authorized access on the host to exploit the flaw, after which they may gain elevated privileges within that session.

Generated by OpenCVE AI on September 8, 2026 at 19:45 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the official Windows security update for CVE-2026-56198 from Microsoft (see https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-56198)
  • Enforce least‑privilege for local accounts and disable unnecessary administrative privileges to limit the impact of any local privilege escalation attempt
  • Monitor security and audit logs for anomalous privilege changes and take corrective action immediately if suspicious activity is detected

Generated by OpenCVE AI on September 8, 2026 at 19:45 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 09 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 08 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
Microsoft windows Server 2025 (server Core Installation)
Vendors & Products Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
Microsoft windows Server 2025 (server Core Installation)

Tue, 08 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Description Out-of-bounds read in Microsoft Trace Data Helper allows an authorized attacker to elevate privileges locally.
Title Microsoft Trace Data Helper Elevation of Privilege Vulnerability
First Time appeared Microsoft
Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
Microsoft windows Server 2025
Weaknesses CWE-125
CPEs cpe:2.3:o:microsoft:windows_11_24H2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_25H2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_26H1:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*
Vendors & Products Microsoft
Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
Microsoft windows Server 2025
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Windows 11 24h2 Windows 11 24h2 Windows 11 25h2 Windows 11 25h2 Windows 11 26h1 Windows 11 26h1 Windows Server 2025 Windows Server 2025 (server Core Installation)
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-09-25T21:34:12.924Z

Reserved: 2026-06-19T13:54:04.007Z

Link: CVE-2026-56198

cve-icon Vulnrichment

Updated: 2026-09-09T18:33:22.083Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-08T18:17:42.793

Modified: 2026-09-09T19:17:28.560

Link: CVE-2026-56198

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-08T20:15:06Z

Weaknesses