CVE-2026-69777: Windows DHCP Client Elevation of Privilege Vulnerability
Published Sep 8, 2026
·Updated
Heap-based buffer overflow in Windows DHCP Client allows an authorized attacker to elevate privileges over an adjacent network.
Other sources
Windows DHCP Client Elevation of Privilege Vulnerability
— Microsoft
Affected Software
7 affected componentsFixes available
Microsoft Windows DHCP Client
Microsoft Windows 11=25H2
10.0.26200.9445
Microsoft Windows 11=24H2
10.0.26100.9445
Microsoft Windows 11=25H2
10.0.26200.9445
Microsoft Windows 11=26H1
10.0.28000.2954
Microsoft Windows 11=24H2
10.0.26100.9445
Microsoft Windows 11=26H1
10.0.28000.2954
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26200.9445Patch KB5124008 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26100.9445Patch KB5124008 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.28000.2954Patch KB5124012
Event History
Sep 8, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·02:00 PM
Affected Software
Updated
via Microsoft·02:00 PM
Description
CVE Published
via MITRE·05:16 PM
Data Sourced
via MITRE·05:16 PM
DescriptionSeverity
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attacker must be authorized, have low privileges, and be on an adjacent network. No user interaction is required.
2
Which systems are identified as affected?
The affected software listed is Microsoft Windows 11 and Microsoft Windows DHCP Client.