PT-2026-7345 · Microsoft · Windows Ancillary Function Driver For Winsock+1
Dark_Puzzle
+1
·
Published
2026-02-10
·
Updated
2026-06-15
·
CVE-2026-21241
CVSS v3.1
7.0
High
| Vector | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Windows versions (affected versions not specified)
Description
A use-after-free condition exists in the Windows Ancillary Function Driver for WinSock, specifically within the
afd.sys file. This issue allows an authorized attacker to elevate privileges locally. The vulnerability is related to memory management and occurs when memory is accessed after it has been freed. Exploitation of this issue can allow an attacker to affect the system. Research indicates the vulnerability was discovered through exploration of Windows I/O completion internals.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
LPE
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows
Windows Ancillary Function Driver For Winsock