PT-2026-58668 · Microsoft · Directx+1
CVE-2026-58629
·
Published
2026-07-14
·
Updated
2026-07-21
CVSS v3.1
7.0
High
| Vector | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Windows DirectX (affected versions not specified)
Description
A use-after-free and double-free condition exists in the DirectX Graphics Kernel (
dxgkrnl). The issue occurs during the rollback process of a failed D3DKMTCreateAllocation() function call, where an allocation handle is re-read from user memory and freed incorrectly. An authorized local attacker with low privileges can exploit this to elevate their privileges to near-total control of the system.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Directx
Windows