Impact
An authenticated or local network attacker can exploit a use‑after‑free condition in Windows TCP/IP that allows escalation of privileges. The flaw occurs when maliciously crafted network packets are processed, causing the TCP/IP stack to access memory that has already been freed. A successful exploit could allow the attacker to gain higher system privileges, potentially enabling read/write access to privileged resources or execution of arbitrary code with elevated rights.
Affected Systems
Microsoft Windows 10 (versions 1809, 21H2, 22H2), Windows 11 (23H2, 24H2, 25H2, 26H1), Windows Server 2019 (including Server Core), Windows Server 2022, and Windows Server 2025 (including Server Core). Devices with x86, x64, and arm64 builds of the affected Windows editions are all susceptible.
Risk and Exploitability
The CVSS score of 7.1 classifies this as a high‑severity vulnerability, and the lack of a publicly available EPSS score suggests exploitation potential is not well quantified yet. Since the flaw requires an authorized attacker with network access, the risk is significant for servers and endpoints exposed to untrusted networks. The vulnerability is not listed in the CISA KEV catalog, but the potential impact on confidentiality, integrity, and availability warrants urgent attention.
OpenCVE Enrichment