Heap-Based Buffer Overflow in Windows Shell by Microsoft
CVE-2026-62770
7.8HIGH
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 11 August 2026
What is CVE-2026-62770?
A vulnerability exists within Windows Shell that could allow an attacker with local access to elevate their privileges through a heap-based buffer overflow. This flaw may compromise system security by enabling unauthorized changes to the system or applications, potentially leading to data leakage or further exploitation. Users and administrators are advised to apply the latest security patches to mitigate this risk.
Affected Version(s)
Windows 10 Version 1607 32-bit Systems 10.0.14393.0 < 10.0.14393.9418
Windows 10 Version 1809 32-bit Systems 10.0.17763.0 < 10.0.17763.9115
Windows 10 Version 21H2 32-bit Systems 10.0.19044.0 < 10.0.19044.7663