PT-2026-47906 · Microsoft · Windows Nt Os Kernel+1

CVE-2026-42980

·

Published

2026-06-09

·

Updated

2026-08-18

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows 10 Version 1607
Description An integer underflow (wrap or wraparound) in the Windows NT OS Kernel occurs due to incorrect handling of integer values when forming data within the WMI (Windows Management Instrumentation) subsystem. This flaw leads to an out-of-bounds write in dynamic memory, allowing an authorized local attacker with standard user privileges to elevate their permissions to NT AUTHORITYSYSTEM level.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

LPE

DoS

Integer Underflow

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-08327
CVE-2026-42980

Affected Products

Windows
Windows Nt Os Kernel