CVE-2026-85921: Windows Secure Kernel Mode Elevation of Privilege Vulnerability
Published Sep 14, 2026
·Updated
Double free in Windows Secure Kernel Mode allows an authorized attacker to elevate privileges locally.
Other sources
Windows Secure Kernel Mode Elevation of Privilege Vulnerability
— Microsoft
Affected Software
2 affected componentsFixes available
Microsoft Windows 11=26H1
10.0.28000.2956
Microsoft Windows 11=26H1
10.0.28000.2956
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.28000.2956Patch KB5129194
Event History
Sep 14, 2026
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·02:00 PM
Affected Software
Updated
via Microsoft·02:00 PM
Description
CVE Published
via MITRE·05:19 PM
Data Sourced
via MITRE·05:19 PM
DescriptionSeverity
Data Sourced
via NVD·06:20 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Who is realistically exposed to exploitation?
The affected software listed is Microsoft Windows 11. Exploitation requires an authorized attacker with local access, so it is not described as remotely exploitable.
2
What level of access does an attacker need before exploiting this issue?
The attacker must already be authorized and have high privileges on the affected system. No user interaction is required.