Description
Heap-based buffer overflow in Windows SMB Client allows an authorized attacker to elevate privileges locally.
Published: 2026-09-08
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Elevation of Privilege
Action: Patch
AI Analysis

Impact

A heap-based buffer overflow exists in the Windows SMB Client that can be triggered by an authorized local attacker. The flaw allows the attacker to execute arbitrary code at higher privilege levels, effectively granting administrative rights and full system control. This weakness corresponds to CWE-122.

Affected Systems

The affected product is Microsoft Windows 11 version 26H1, 64‑bit releases, as indicated by the provided CPE string. Users running this version should confirm whether the SMB client component is installed and active.

Risk and Exploitability

The CVSS score of 7.8 indicates high severity. No EPSS score is available, so the likelihood of exploitation cannot be quantified. The vulnerability is not listed in CISA KEV. Successful exploitation requires local authorization, making the threat primarily relevant to insiders or compromised local accounts. If exploited, an attacker could gain unrestricted access to the system, jeopardizing confidentiality, integrity, and availability.

Generated by OpenCVE AI on September 8, 2026 at 22:15 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest Windows 11 26H1 update that fixes the SMB client heap overflow.
  • If the SMB client is not needed for network sharing, disable or remove the SMB client feature to eliminate the attack surface.
  • Enforce least privilege by restricting local administrative rights, limiting the potential impact of a local privilege escalation.

Generated by OpenCVE AI on September 8, 2026 at 22:15 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 24 Sep 2026 19:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:o:microsoft:windows_11_26h1:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_26h1:*:*:*:*:*:*:x64:*

Sun, 13 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft windows 11 26h1
Vendors & Products Microsoft windows 11 26h1

Wed, 09 Sep 2026 22:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 08 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Description Heap-based buffer overflow in Windows SMB Client allows an authorized attacker to elevate privileges locally.
Title Windows SMB Client Elevation of Privilege Vulnerability
First Time appeared Microsoft
Microsoft windows 11 26h1
Weaknesses CWE-122
CPEs cpe:2.3:o:microsoft:windows_11_26H1:*:*:*:*:*:*:x64:*
Vendors & Products Microsoft
Microsoft windows 11 26h1
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Windows 11 26h1 Windows 11 26h1
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-09-25T21:32:48.323Z

Reserved: 2026-08-03T21:12:04.477Z

Link: CVE-2026-69544

cve-icon Vulnrichment

Updated: 2026-09-09T10:01:35.095Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-08T18:19:22.800

Modified: 2026-09-24T19:00:44.567

Link: CVE-2026-69544

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-13T20:11:28Z

Weaknesses
  • CWE-122

    Heap-based Buffer Overflow