Urgent.News

What's breaking now, across thousands of outlets.

Tech

CVE-2026-70585: A Use-After-Free in the Windows NFS Client Stack

CVE-2026-70585: A Use-After-Free in the Windows NFS Client Stack Windows can mount NFS shares as a client, and that capability pulls a remote procedure call parser into the kernel's network path. CVE-2026-70585 is a use-after-free in that parser, and it is a good example of a low CVSS score attached to a high-consequence code path. What the record says NVD describes CVE-2026-70585 as a…

In September 2026, the US National Vulnerability Database (NVD) disclosed a security flaw affecting Windows Services for NFS, known as CVE-2026-70585. This vulnerability is a use-after-free issue within the ONCRPC XDR driver, a parser responsible for handling external data representation in the Windows kernel. Although the Common Vulnerability Scoring System (CVSS) assigned it a relatively low score of 7.0, the implications are significant.

The NVD explains that an attacker, acting through the NFS server they control, could exploit this flaw to execute arbitrary code on a compromised Windows system. Despite the description stating that the impact is local, the reality is that an attacker could manipulate the NFS server to influence the client's parsing process, ultimately leading to a serious security breach.

NFS shares can be mounted from various sources, including internal servers, NAS appliances, or even hostile entities. This means that any system with the NFS client feature installed is at risk. To mitigate this vulnerability, Microsoft recommends applying the September 2026 security updates to all Windows hosts with the NFS client feature enabled. It is also advised to assess whether the Windows-to-NFS path is necessary, as removing this protocol could eliminate potential attack vectors.

Written by urgent.news from Dev.to's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at dev.to →

More in Tech

More from Monday 5 October →