PT-2026-58435 · Microsoft · Brokering File System+1
CVE-2026-50458
·
Published
2026-07-14
·
Updated
2026-07-24
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Microsoft Brokering File System (affected versions not specified)
Description
A use-after-free (UAF) issue exists in the
bfs.sys Windows kernel minifilter driver within the Brokering File System. This flaw is caused by synchronization errors when using a shared resource. An authorized attacker can exploit this to elevate privileges locally and gain full control over the system.Recommendations
Install update KB5101650.
Fix
DoS
RCE
Race Condition
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Brokering File System
Windows