Public proof-of-concept (PoC) exploit code was released for CVE-2026-42980, a local privilege escalation vulnerability in the Windows NT OS Kernel. This vulnerability occurs due to an integer underflow in kernel-mode code. CVE-2026-42980 is an elevation-of-privilege flaw in the Windows NT OS Kernel caused by an integer underflow (wraparound) condition in a kernel code path. This bug allows a locally authenticated attacker with low privileges to trigger incorrect arithmetic handling, leading to unsafe kernel behavior and, ultimately, code execution in a highly privileged context. Successful exploitation enables the attacker to escalate their privileges from a standard user account to NT AUTHORITY\SYSTEM, granting complete control...
Read the full article at the source.
Comments (0)
No comments yet. Be the first to comment!