Impact
The vulnerability is a stack-based buffer overflow in the Windows TCP/IP stack that allows an unauthenticated attacker to execute arbitrary code on the affected system. If exploited, the attacker can gain full control of the machine, leading to loss of confidentiality, integrity, and availability of data and services. The flaw is specific to memory handling within the TCP/IP protocol handling logic and is triggered by malformed network packets.
Affected Systems
Affected systems include Microsoft Windows 10 versions 1607, 1809, 21H2, and 22H2; Windows 11 versions 23H2, 24H2, 25H2, 26H1; and Windows Server editions 2012, 2012 R2, 2016, 2019, 2022, and 2025. All listed operating system builds across x86, x64, ARM64, and Server Core installations are impacted.
Risk and Exploitability
With a CVSS score of 8.1, the vulnerability presents a high severity risk. The EPSS score is not available, and it is not listed in the CISA KEV catalog. The likely attack vector is remote over the network, where an adversary sends a specially crafted packet to trigger the overflow. No privileged access is required to exploit the flaw, making any device exposed to the Internet or untrusted networks a potential target.
OpenCVE Enrichment