CVE-2026-68820: Microsoft Windows Ancillary Function Driver for WinSock
Microsoft Windows Ancillary Function Driver for WinSock contains a use-after-free vulnerability that allows an authorized attacker to elevate privileges locally.
- Vendor
- Microsoft
- Product
- Windows Ancillary Function Driver for WinSock
- Vulnerability
- Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability
- Date added
- Aug 11, 2026
- CISA due date (U.S. federal agencies)
- Aug 25, 2026
- Known ransomware campaign use
- Unknown
- Weakness (CWE)
- CWE-416
References
This site summarizes CISA's catalog for information only. It is not security advice — follow your vendor's guidance and official advisories.
Last updated: · Catalog version 2026.10.02