CVE-2026-69468: Windows Volume Manager Extension Driver Elevation of Privilege Vulnerability
Heap-based buffer overflow in Windows Volume Manager Extension Driver allows an authorized attacker to elevate privileges locally.
Other sources
Windows Volume Manager Extension Driver Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Remediation
Event History
Frequently Asked Questions
Who is exposed to this vulnerability?
Systems running the listed Microsoft Windows client or server products are in scope. Exploitation is local, so the attacker must already be able to execute with authorized low-privilege access on the affected system.
What access does an attacker need to exploit it?
The attacker needs local access and low privileges; no user interaction is required. The vulnerability can be used to elevate privileges and has high confidentiality, integrity, and availability impact.
Is this exploitable remotely or through a default network service?
The supplied vector identifies the attack vector as local. The available data does not indicate a remote network attack path or identify any configuration-dependent exposure.