CVE-2026-69732: Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows Link Layer Topology Discovery Protocol allows an unauthorized attacker to execute code over a network.
Other sources
Windows Link Layer Topology Discovery Protocol Remote Code Execution Vulnerability
— Microsoft
Affected Software
Remediation
Event History
Frequently Asked Questions
Which systems are in scope for this vulnerability?
The affected software list includes Microsoft Windows 10, Windows 11, Windows Server 2012, Windows Server 2012 R2, Windows Server 2016, Windows Server 2019, Windows Server 2022, and Windows Server 2025.
Does exploitation require credentials or user interaction?
No. The vector indicates network-based exploitation with no privileges required and no user interaction required.
What does an attacker need to do to exploit this issue?
An attacker must be able to reach the Windows Link Layer Topology Discovery Protocol over the network. The attack complexity is rated high, so exploitation requires additional conditions or specialized circumstances not specified in the available data.
What is the likely impact of successful exploitation?
Successful exploitation can allow remote code execution. The listed impact includes high confidentiality, integrity, and availability effects.