ZeroHour

CVE-2026-69336

mass

Heap-Based Buffer Overflow in Microsoft Standard XPS Enables Network Privilege Escalation

CVSS 3.1
7.1 high
EPSS
<1%p43
Published
()
Modified
AI analysis

A heap-based buffer overflow (CWE-122) in Microsoft Standard XPS can be triggered by an authorized, low-privileged attacker over a network, with exploitation requiring user interaction and favorable conditions (high attack complexity). Successful exploitation lets the attacker elevate privileges on the target, with high impact on confidentiality, integrity, and availability. The affected component is the standard XPS (XPS Document Writer) print component that ships with Windows, so typical Windows deployments are potentially in scope; the available data does not specify which version ranges are affected. There is currently no known exploitation: no public proof of concept exists, the flaw is not in CISA's KEV catalog, and EPSS assigns only about a 0.5% probability of exploitation within 30 days. Defenders should consult Microsoft's advisory for the exact affected builds and patch details.

What to do: Apply the Microsoft security update for CVE-2026-69336 via Windows Update/Patch Tuesday as soon as it is available and verify the patched build against Microsoft's advisory, since the source data does not list specific version ranges. Until patched, limit untrusted users' ability to submit jobs to the XPS/Document Writer component and monitor MSRC for any evidence of in-the-wild exploitation.

Affected
Microsoft Standard XPS (standard XPS Document Writer print component in Windows)
Estimated exposure
masshundreds of millions of Windows endpoints (component ships by default with Windows) — The standard XPS/Document Writer component is installed by default on Windows client and server editions, so potential exposure approximates the global Windows install base, though actual exploitation requires an authenticated user and…

Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.

Description

Heap-based buffer overflow in Microsoft Standard XPS allows an authorized attacker to elevate privileges over a network.

Weakness
CWE-122
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.