CVE-2026-40369: windows 11 24h2 vulnerability

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
CVE-2026-40369CVSS 7.8Windows

CVE-2026-40369: windows 11 24h2 vulnerability

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

CVSS
7.8 HIGH
EPSS
90.74%
Known exploited
not in KEV
Product
windows 11 24h2

What is known

Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.

Sources