Microsoft Windows Heap-Based Buffer Overflow Vulnerability
Microsoft Windows Advanced Local Procedure Call contains a heap-based buffer overflow vulnerability that allows an attacker to elevate privileges locally.
CISA entryMicrosoft · Operating system
Windows 11 is Microsoft's client operating system for personal computers and managed organizational endpoints.
Record scope: Home and Pro · all channels · all architectures · Global. View the Windows 11 family.
Canonical record: https://lifecycle.blacktree.nl/catalogue/windows-11-24h2-home-pro · Generated 2026-10-07 22:15 UTC.
Windows 11 is Microsoft's client operating system for personal computers and managed organizational endpoints.
Employee endpoints, personal computers, managed laptops, workstations and virtual desktops.
Preinstalled or deployed to compatible PCs, virtual machines and cloud-hosted desktops.
Description source: Microsoft Windows 11 overview · reviewed 22 Sep 2026
| Phase | Start | End | State | Coverage and conditions |
|---|---|---|---|---|
| Modern Lifecycle support | 1 October 2024day precision | 13 October 2026day precision | confirmed | Security and quality updatesConditions: Home, Pro, Pro Education, Pro for Workstations and SE |
Release notes describe changes in this version. Their publication dates are not treated as support or retirement boundaries.
Release-note research has not completed for this version.
Matches use the product-family mapping against the CISA Known Exploited Vulnerabilities catalogue. They show vulnerabilities exploited in the wild, not every published CVE. Confirm the affected edition and release in the linked vendor advisory before acting.
Microsoft Windows Advanced Local Procedure Call contains a heap-based buffer overflow vulnerability that allows an attacker to elevate privileges locally.
CISA entryMicrosoft Windows Update Stack contains a link following vulnerability that allows a local attacker to escalate privileges locally up to SYSTEM.
CISA entryMicrosoft Windows Ancillary Function Driver for WinSock contains a use-after-free vulnerability that allows an authorized attacker to elevate privileges locally.
CISA entryMicrosoft Windows contains a buffer overflow vulnerability in the Windows Server Service that allows remote attackers to execute arbitrary code via a crafted RPC request that triggers an overflow during path canonicalization.
CISA entryMicrosoft Windows Shell contains a protection mechanism failure vulnerability that allows an unauthorized attacker to perform spoofing over a network.
CISA entryMicrosoft Windows contains a link following vulnerability that allows for privilege escalation
CISA entryShowing the 6 most recently added of 200 product-family matches.
Windows 11 version 24H2 Home and Pro started on 1 October 2024 and retires on 13 October 2026.
Manually verified against the registered authoritative source.
Open vendor sourceRepresentative private pilot catalogue seed.