Description
Double free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.
Published: 2026-09-14
Score: 8.2 High
EPSS: < 1% Very Low
KEV: No
Impact: Privilege Escalation
Action: Patch
AI Analysis

Impact

A double free bug in the Windows Secure Kernel Mode subsystem allows a local attacker with authorized access to gain elevated privileges on the system. This flaw is classified as a memory management error (CWE‑415) and can be exploited to execute code with higher privileges than the attacker originally possesses.

Affected Systems

Microsoft Windows 11 version 26H1 (x64).

Risk and Exploitability

The CVSS score of 8.2 indicates high severity, and the EPSS score of 0.00261 (0.26%) shows a very low probability of exploitation in the general population. The vulnerability not listed in the CISA KEV catalog. Based on the description, the likely attack vector is local; an authorized user who can run code in kernel mode may trigger the double free and thus obtain elevated privileges. The lack of a publicly disclosed exploit at this time does not diminish the risk posed by the flaw, especially in environments where privileged processes run with inadequate isolation.

Generated by OpenCVE AI on September 20, 2026 at 23:46 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Install the Microsoft security patch that fixes CVE‑2026‑85921 for Windows 11 26H1.
  • If the patch is delayed, restrict or remove the use of the affected kernel module or disable any features that rely on it until the update is applied.
  • Implement least‑privilege on all user accounts and services so that an attacker exploiting this bug is limited to the permissions of the minimally privileged context they originate from.

Generated by OpenCVE AI on September 20, 2026 at 23:46 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 29 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
First Time appeared Microsoft windows 11 26h1
CPEs cpe:2.3:o:microsoft:windows_11_26h1:*:*:*:*:*:*:arm64:*
cpe:2.3:o:microsoft:windows_11_26h1:*:*:*:*:*:*:x64:*
Vendors & Products Microsoft windows 11 26h1

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description Double free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.
Title Windows Secure Kernel Mode Elevation of Privilege Vulnerability
First Time appeared Microsoft
Microsoft windows 11 26h1
Weaknesses CWE-415
CPEs cpe:2.3:o:microsoft:windows_11_26H1:*:*:*:*:*:*:x64:*
Vendors & Products Microsoft
Microsoft windows 11 26h1
References
Metrics cvssV3_1

{'score': 8.2, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Microsoft Windows 11 26h1 Windows 11 26h1
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2026-10-01T22:56:19.729Z

Reserved: 2026-09-04T18:24:41.250Z

Link: CVE-2026-85921

cve-icon Vulnrichment

Updated: 2026-09-14T19:15:02.675Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-14T18:20:20.047

Modified: 2026-09-29T19:24:48.280

Link: CVE-2026-85921

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-21T00:00:08Z

Weaknesses