Description
Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges over an adjacent network.
Published: 2026-09-08
Score: 8 High
EPSS: < 1% Very Low
KEV: No
Impact: Elevation of Privilege
Action: Apply Patch
AI Analysis

Impact

A heap‑based buffer overflow exists in the Windows DHCP Client that allows an authorized attacker to gain elevated privileges on an adjacent network. The flaw resides in the handling of DHCP messages and can be leveraged to execute arbitrary code with higher privileges, potentially allowing modification of system settings or compromise of other networked devices. The weakness is classified by CWE‑122, indicating classic heap corruption.

Affected Systems

The vulnerability affects Microsoft Windows 11 versions 24H2, 25H2, and 26H1. The earlier builds (24H2 and 25H2) are identified for ARM64 architectures, while 26H1 applies to x64 systems. Only these releases are known to be impacted.

Risk and Exploitability

With a CVSS score of 8, the vulnerability is considered high severity. The EPSS score is not available, and the issue is not currently listed in the CISA KEV catalog, suggesting limited documented exploitation at this time. Based on the description, it is inferred that the attack vector is a network‑based scenario, where an attacker with legitimate network access crafts malicious DHCP packets to trigger the overflow and elevate privileges on the target host or adjacent devices. Because the flaw requires an authorized attacker who can influence DHCP traffic, the attack surface is restricted but still significant for environments with unmanaged or poorly monitored network infrastructure.

Generated by OpenCVE AI on September 9, 2026 at 00:15 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply any available Windows 11 updates that address the DHCP Client buffer overflow.
  • If patching cannot be performed immediately, disable the DHCP Client service or configure the system with a static IP configuration to block DHCP traffic from the network.
  • Restrict network exposure by implementing strict ingress filtering or VLSM to reduce the possibility of malicious DHCP packets reaching vulnerable hosts.
  • Conduct regular network monitoring and review DHCP logs for anomalous requests that may target the vulnerable client.

Generated by OpenCVE AI on September 9, 2026 at 00:15 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 11 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 10 Sep 2026 18:00:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
CPEs cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_11_26h1:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_26h1:*:*:*:*:*:*:x64:*
Vendors & Products Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1

Tue, 08 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Description Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges over an adjacent network.
Title Windows DHCP Client Elevation of Privilege Vulnerability
First Time appeared Microsoft
Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
Weaknesses CWE-122
CPEs cpe:2.3:o:microsoft:windows_11_24H2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_25H2:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_26H1:*:*:*:*:*:*:x64:*
Vendors & Products Microsoft
Microsoft windows 11 24h2
Microsoft windows 11 25h2
Microsoft windows 11 26h1
References
Metrics cvssV3_1

{'score': 8, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C'}


Subscriptions

Microsoft Windows 11 24h2 Windows 11 24h2 Windows 11 25h2 Windows 11 25h2 Windows 11 26h1 Windows 11 26h1
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-09-25T21:36:33.583Z

Reserved: 2026-08-03T22:46:09.552Z

Link: CVE-2026-69777

cve-icon Vulnrichment

Updated: 2026-09-11T13:40:12.069Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-08T18:19:49.103

Modified: 2026-09-11T14:17:31.680

Link: CVE-2026-69777

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-10T20:55:44Z

Weaknesses
  • CWE-122

    Heap-based Buffer Overflow