CVE-2026-58641: .NET Elevation of Privilege Vulnerability
.NET Elevation of Privilege Vulnerability
Other sources
Integer overflow or wraparound in .NET allows an unauthorized attacker to elevate privileges locally.
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 8.0.30Patch KB5122104 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 9.0.19Patch KB5122105 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.11Patch KB5122106
Event History
Frequently Asked Questions
What is the severity of CVE-2026-58641?
CVE-2026-58641 has a high severity rating of 7.8.
How do I fix CVE-2026-58641?
To mitigate CVE-2026-58641, ensure all installations of Microsoft .NET are updated to the latest version provided by Microsoft.
What systems are affected by CVE-2026-58641?
CVE-2026-58641 affects Microsoft .NET versions 8.0, 9.0, and 10.0 on Linux, Mac OS, and Windows platforms.
What type of vulnerability is CVE-2026-58641?
CVE-2026-58641 is classified as an elevation of privilege vulnerability caused by an integer overflow.
Can attackers exploit CVE-2026-58641 remotely?
CVE-2026-58641 requires local access for an unauthorized attacker to exploit the elevation of privilege vulnerability.