http://forumdzjegkm6ey6ngexwpv5u3f3sav5wnrwqmatcb6c6mhxmkhsczid.onion/topic/details/new-no-click-critical-vulnerability-in-microsoft-windows-cve-2025-21298/41
The first free operation occurs as part of normal processing, where ole32.dll releases the CONTENTS stream. However, crucially, the pointer to this freed memory isn’t nullified. This creates what we call a vulnerability window – a period where we have a dangling pointer to freed memory.