CVE-2026-69336
massHeap-Based Buffer Overflow in Microsoft Standard XPS Enables Network Privilege Escalation
A heap-based buffer overflow (CWE-122) in Microsoft Standard XPS can be triggered by an authorized, low-privileged attacker over a network, with exploitation requiring user interaction and favorable conditions (high attack complexity). Successful exploitation lets the attacker elevate privileges on the target, with high impact on confidentiality, integrity, and availability. The affected component is the standard XPS (XPS Document Writer) print component that ships with Windows, so typical Windows deployments are potentially in scope; the available data does not specify which version ranges are affected. There is currently no known exploitation: no public proof of concept exists, the flaw is not in CISA's KEV catalog, and EPSS assigns only about a 0.5% probability of exploitation within 30 days. Defenders should consult Microsoft's advisory for the exact affected builds and patch details.
What to do: Apply the Microsoft security update for CVE-2026-69336 via Windows Update/Patch Tuesday as soon as it is available and verify the patched build against Microsoft's advisory, since the source data does not list specific version ranges. Until patched, limit untrusted users' ability to submit jobs to the XPS/Document Writer component and monitor MSRC for any evidence of in-the-wild exploitation.
| Microsoft Standard XPS (standard XPS Document Writer print component in Windows) | — |
Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.
Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges over a network.
- Weakness
- CWE-122
- Vector
- CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.