Microsoft · Windows Tcp/Ip · CVE-2025-26686
**Name of the Vulnerable Software and Affected Versions**
Windows versions (affected versions not specified)
**Description**
A flaw exists in the Windows TCP/IP stack related to the improper locking of memory containing sensitive data. This allows a remote, unauthorized attacker to execute arbitrary code over a network, potentially hijacking systems. The vulnerability stems from unsafe mechanisms used for handling authentication data in the operating system's memory. The issue allows for remote code execution and system compromise.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.