Microsoft Windows Ancillary Function Driver for WinSock Privilege Escalation Vulnerability

Vulnerability

A race condition vulnerability has been identified in the Windows Ancillary Function Driver for WinSock. This vulnerability allows an authorized attacker to elevate privileges locally. The issue arises from improper synchronization in concurrent execution using shared resources.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing an attacker to gain SYSTEM privileges.

Remediation

Users can apply the security update KB5082123 for Windows Server 2019, Windows 10 Version 1809, Windows 11 Version 26H1, and several other Windows versions. Instructions for downloading this security update are available on the Microsoft Update Catalog. For Windows Server 2022, 23H2 Edition (Server Core installation), the security update KB5082060 can be downloaded from the Microsoft Update Catalog.

Added: Apr 14, 2026, 10:43 PM
Updated: Apr 14, 2026, 10:43 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
2.9
remediation
0.0
relevance
5.5
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.