← Back to CVE search

CVE-2026-40377

Windows Cryptographic Services

Description

Heap-based buffer overflow in Windows Cryptographic Services allows an authorized attacker to elevate privileges locally.

CVSS 7.8EPSS 0.304%Risk 0.8
View source
Published
2026-05-12 18:17:16
Affected versions
unknown
Type
Core software
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Operating systems
Windows