Windows Netlogon stack buffer overflow
ID: 8a15eb15-5a12-5f12-b335-842fcdc8e39b
STIX ID: report--8a15eb15-5a12-5f12-b335-842fcdc8e39b
Feed Name: Kudelski Security
Threat Score
A critical remote code execution vulnerability (CVE-2026-41089, CVSS 9.8) in the Netlogon service (NetrServerAuthenticate3) allows unauthenticated attackers to overflow a stack buffer via the ComputerName parameter, leading to SYSTEM-level compromise of domain controllers; Microsoft released May 2026 patches and immediate patching, verification, network segmentation, and defensive controls are recommended due to active exploitation in the wild.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
