ID:12685 - Exploit for Heap-based buffer overflow in Windows Server and Windows - CVE-2026-32223

 
Main Vulnerability Database Exploits ID:12685 - Exploit for Heap-based buffer overflow in Windows Server and Windows - CVE-2026-32223

ID:12685 - Exploit for Heap-based buffer overflow in Windows Server and Windows - CVE-2026-32223

Published: April 30, 2026


Vulnerability identifier: #VU126163
Vulnerability risk: Low
CVE-ID: CVE-2026-32223
CWE-ID: CWE-122
Exploitation vector: Local access
Vulnerable software:
Windows Server
Windows

Link to public exploit:


Vulnerability description

The vulnerability allows a local attacker to escalate privileges on the target system.

The vulnerability exists due to a boundary error in Windows USB Printing Stack (usbprint.sys). An attacker with physical access can trigger a heap-based buffer overflow and gain elevated privileges on the target system.


Remediation

Install updates from vendor's website.