logo

Windows Netlogon stack buffer overflow

ID: 8a15eb15-5a12-5f12-b335-842fcdc8e39b

STIX ID: report--8a15eb15-5a12-5f12-b335-842fcdc8e39b

Feed Name: Kudelski Security

Threat Score
90/100

Date Published: 2026-06-02

Date Updated: 2026-07-22

...
...

A critical remote code execution vulnerability (CVE-2026-41089, CVSS 9.8) in the Netlogon service (NetrServerAuthenticate3) allows unauthenticated attackers to overflow a stack buffer via the ComputerName parameter, leading to SYSTEM-level compromise of domain controllers; Microsoft released May 2026 patches and immediate patching, verification, network segmentation, and defensive controls are recommended due to active exploitation in the wild.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.