Loading video...
Video Failed to Load
🚨 CVE-2026-41089: Windows Netlogon Remote Code Execution via CLDAP Stack Buffer Overflow Published: June 1st, 2026 PoC: One crafted UDP packet to port 389 overflows a 528-byte stack buffer inside LSASS on any unpatched Windows Domain Controller. The process crashes. The DC reboots in ~60 seconds. No authentication required.
71,789 views • 3 months ago •via X (Twitter)
7 Comments

Video Credit:

An unauthenticated Domain Controller crash is serious, but a crash alone proves DoS, not RCE. Patch urgently but verify the exploit claims before amplifying them.

Clear proof here

most vulns like this aren't just about the code, they're about the system and people that build it. when you've got an open port with no clear access control, a crafted packet can be the ultimate bypass

CVSS 9.8 pre-auth on UDP 389. One crafted packet reboots your DCs with zero credentials. For telecom ops running Windows DCs, segment that subnet now.

Its already proven that this Vulnerability is almost impossible to be used for RCE

Pre-auth RCE on Domain Controllers with a public PoC is about as bad as it gets. Hope nobody has Netlogon exposed to the internet.
