THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-92f5-vc22-8j33 (critical) — Microsoft QUIC: Remote Code Execution Vulnerability

[GHSA] GHSA-92f5-vc22-8j33 (critical) — Microsoft QUIC: Remote Code Execution Vulnerability

highgithub_advisoriesPublished 2026-09-08

GHSA-92f5-vc22-8j33 Severity: critical CVE: CVE-2026-62815

Microsoft QUIC: Remote Code Execution Vulnerability

# Summary Use after free in Microsoft QUIC allows an unauthorized attacker to execute code over a network.

# Details

New network path creations and removals triggered by incoming packets can lead to a pointer invalidation.

## Patches

- Guard path promotion [e0f55b5](https://github.c

Indicators of compromise

Original source: https://github.com/advisories/GHSA-92f5-vc22-8j33