Use-after-free in Microsoft Windows and Windows Server - CVE-2026-62795
Published: August 12, 2026
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code.
The vulnerability exists due to use-after-free in Windows LDAP - Lightweight Directory Access Protocol when processing a server response after a user connects to a malicious server. A remote attacker can host a malicious server and return a specially crafted response to execute arbitrary code.
User interaction is required to initiate the connection to the malicious server from an affected client.
Affected software
Windows Server
How to mitigate CVE-2026-62795
Windows Server - addressed in versions 2012 R2 6.3.9600.23337, 2012 6.2.9200.26279, 2016 10.0.14393.9418, 2019 10.0.17763.9115, 2022 10.0.20348.5440, 2022 10.0.20348.5499, 2025 10.0.26100.33222, 2025 10.0.26100.33296