Microsoft Windows Netlogon Stack-Based Buffer Overflow Vulnerability Allowing Remote Code Execution

Vulnerability

A stack-based buffer overflow vulnerability has been identified in the Windows Netlogon component. This vulnerability allows an unauthorized attacker to execute code remotely over the network. The issue arises when the Netlogon service improperly handles specially crafted network requests, potentially enabling code execution on the affected system without requiring prior access or authentication.

Impact

Exploitation of this vulnerability could lead to unauthorized remote code execution on the affected system.

Remediation

Users can apply the security update for this vulnerability, which is included in the May 2026 Monthly Rollup, available through the Microsoft Update Catalog. For Windows Server 2012 R2, Windows Server 2016, Windows Server 2019, Windows Server 2022, and Windows Server 2025, specific update details can be found in the Microsoft Knowledge Base articles linked in the 'Windows Server Update' section.

Added: May 12, 2026, 7:24 PM
Updated: May 12, 2026, 7:24 PM

Vulnerability Rating

Custom Algorithm
spread
8.1
impact
7.5
exploitability
7.2
remediation
7.7
relevance
8.1
threat
0.0
urgency
2.9
incentive
8.3

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.