Privilege Escalation Vulnerability in Windows Secure Kernel Mode by Microsoft
CVE-2026-85921

8.2HIGH

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
14 September 2026

What is CVE-2026-85921?

A vulnerability in the Windows Secure Kernel Mode has been identified that allows an authorized attacker to exploit a double free condition, potentially enabling them to elevate their privileges on the local system. This flaw poses significant risks, necessitating prompt attention from system administrators and users to implement available security patches. For detailed guidance, refer to the vendor advisory.

Affected Version(s)

Windows 11 version 26H1 ARM64-based Systems 10.0.28000.0 < 10.0.28000.2956

References

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.