PT-2026-2660 · Microsoft · Windows Kernel+1

CVE-2026-20809

·

Published

2026-01-13

·

Updated

2026-01-17

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows Kernel (affected versions not specified)
Description A time-of-check time-of-use (TOCTOU) race condition exists within the Windows Kernel Memory. This condition can be exploited by an authorized attacker to gain elevated privileges on a local system. The issue involves a timing window where the state of a resource changes between the time it is checked and the time it is used, potentially leading to unauthorized access or modification.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Heap Based Buffer Overflow

Time Of Check To Time Of Use

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-00473
CVE-2026-20809

Affected Products

Windows
Windows Kernel