Skip to content
ThreatCluster

Multiple CVEs Affect Windows Drivers with Race Condition Vulnerabilities

First seen 12 May 2026, 17:20 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •May 13, 2026 at 16:44 UTC
  • •CVE-2026-32161 allows unauthorized code execution via WiFi Miniport Driver.
  • •CVE-2026-34345 enables local privilege escalation through Ancillary Function Driver.
  • •Both vulnerabilities stem from race conditions in Windows drivers.

Two critical vulnerabilities have been identified in Windows drivers, both published on May 12, 2026. CVE-2026-32161 affects the Windows Native WiFi Miniport Driver, allowing unauthorized attackers to execute code over adjacent networks. CVE-2026-34345 impacts the Windows Ancillary Function Driver for WinSock, enabling authorized attackers to elevate privileges locally. Both vulnerabilities arise from improper synchronization in concurrent execution using shared resources, known as race conditions. The scope of impact includes systems running affected versions of Windows. Immediate action is recommended to mitigate potential exploitation. No active exploitation has been reported as of the publication date. Users are advised to monitor for updates and apply patches as they become available.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 148d ago How this analysis works

Timeline

2026-05-12
CVE-2026-32161 published
A race condition in Windows Native WiFi Miniport Driver allows unauthorized code execution over adjacent networks.
Api.Msrc.Microsoft
2026-05-12
CVE-2026-34345 published
A race condition in Windows Ancillary Function Driver for WinSock allows local privilege escalation for authorized attackers.
Api.Msrc.Microsoft

More articles in this cluster (2)