PT-2026-40131 · Microsoft · Rich Text Edit Control+1

Published

2026-05-12

·

Updated

2026-05-15

·

CVE-2026-32170

CVSS v3.1

6.7

Medium

VectorAV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows Rich Text Edit Control (affected versions not specified)
Description A double free issue in the Windows Rich Text Edit Control allows an authorized attacker to elevate privileges locally. A double free occurs when a program attempts to free the same memory location twice, which can lead to memory corruption.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Double Free

Weakness Enumeration

Related Identifiers

BDU:2026-06749
CVE-2026-32170

Affected Products

Rich Text Edit Control
Windows