CVE-2026-56198: Microsoft Trace Data Helper Elevation of Privilege Vulnerability
Microsoft Trace Data Helper Elevation of Privilege Vulnerability
Other sources
Out-of-bounds read in Microsoft Trace Data Helper allows an authorized attacker to elevate privileges locally.
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26100.9445Patch KB5124008 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.28000.2954Patch KB5124012 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26100.33438Patch KB5122871 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26200.9445Patch KB5124008
Event History
Frequently Asked Questions
Who is exposed to this vulnerability?
Systems running Microsoft Windows 11 or Microsoft Windows Server 2025 are listed as affected. Exploitation is local, so the attacker must be able to run code or otherwise operate on the target system.
What access does an attacker need to exploit it?
The vulnerability requires low privileges and does not require user interaction. It can be used by an authorized local attacker to elevate privileges.
What is the potential impact after successful exploitation?
Successful exploitation can result in elevated privileges on the affected Windows system. The published vector rates confidentiality, integrity, and availability impact as high.