Exploitation Summary
EIP tracks 1 public exploit for CVE-2026-26179. PoCs published by nikosecurity.
AI-analyzed exploit summary This repository contains a functional kernel-mode driver exploit for CVE-2026-26179, targeting a vulnerability in the Windows Secure Kernel. The PoC leverages undocumented functions like `VslpLockPagesForTransfer` and `VslpEnterIumSecureMode` to trigger the bug, demonstrating a local privilege escalation (LPE) via memory corruption.
Description
Double free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Exploits (1)
This repository contains a functional kernel-mode driver exploit for CVE-2026-26179, targeting a vulnerability in the Windows Secure Kernel. The PoC leverages undocumented functions like `VslpLockPagesForTransfer` and `VslpEnterIumSecureMode` to trigger the bug, demonstrating a local privilege escalation (LPE) via memory corruption.
References (1)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H