PT-2026-58637 · Microsoft · Windows Subsystem For Linux
CVE-2026-57973
·
Published
2026-07-14
·
Updated
2026-07-20
CVSS v3.1
6.3
Medium
| Vector | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Windows Subsystem for Linux versions prior to 2.7.10
Description
A time-of-check time-of-use (TOCTOU) race condition exists in the Windows Subsystem for Linux. This flaw allows an authorized local attacker to perform data tampering. A TOCTOU race condition occurs when a program checks the state of a resource and then acts upon that resource, but the state changes between the check and the use.
Recommendations
Update to version 2.7.10.
Fix
Time Of Check To Time Of Use
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows Subsystem For Linux