Heap-based buffer overflow in Windows Remote Desktop allows an authorized attacker to elevate privileges locally.Referenceshttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-40398