PT-2026-24312 · Microsoft · Windows

H4Urek

·

Published

2026-03-10

·

Updated

2026-03-16

·

CVE-2026-25188

CVSS v3.1

8.8

High

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows (affected versions not specified)
Description A heap-based buffer overflow exists in the Windows Telephony Service. This issue allows an unauthorized attacker to elevate privileges over an adjacent network.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-02990
CVE-2026-25188

Affected Products

Windows