Feed aggregator

CVE-2026-83987 Windows Biometric Service Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Categories: Microsoft

CVE-2026-83983 Windows Biometric Service Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Categories: Microsoft

CVE-2026-83985 Windows Biometric Service Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Heap-based buffer overflow in Windows Biometric Service allows an authorized attacker to elevate privileges locally.

Categories: Microsoft

CVE-2026-83989 Windows Services for NFS ONCRPC XDR Driver Denial of Service Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Out-of-bounds read in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to deny service over a network.

Categories: Microsoft

CVE-2026-83990 Microsoft Graphics Component Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Stack-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.

Categories: Microsoft

CVE-2026-83992 Windows Imaging Component Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Heap-based buffer overflow in Windows Imaging Component allows an unauthorized attacker to execute code over a network.

Categories: Microsoft

CVE-2026-83995 Windows NTFS Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Heap-based buffer overflow in Windows NTFS allows an authorized attacker to elevate privileges locally.

Categories: Microsoft

CVE-2026-83997 Windows Message Queuing Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Use after free in Windows Message Queuing allows an unauthorized attacker to execute code over a network.

Categories: Microsoft

CVE-2026-84000 Microsoft Graphics Component Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Heap-based buffer overflow in Microsoft Graphics Component allows an authorized attacker to execute code locally.

Categories: Microsoft

CVE-2026-69806 .NET Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Exposure of sensitive information to an unauthorized actor in .NET allows an authorized attacker to elevate privileges locally.

Categories: Microsoft

CVE-2026-85875 Microsoft Office Excel Information Disclosure Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

Categories: Microsoft

CVE-2026-83501 Windows Virtualization-Based Security (VBS) Information Disclosure Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Out-of-bounds read in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to disclose information locally.

Categories: Microsoft

CVE-2026-83498 Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Untrusted pointer dereference in Windows Virtualization-Based Security (VBS) Enclave allows an authorized attacker to elevate privileges locally.

Categories: Microsoft

CVE-2026-84003 Microsoft Authentication Library (MSAL) for Node.js Spoofing Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Authentication bypass by capture-replay in Microsoft Authentication Library (MSAL) for Node.js allows an unauthorized attacker to perform spoofing over a network.

Categories: Microsoft

CVE-2026-66303 Skype for Business and Lync Denial of Service Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Null pointer dereference in Skype for Business allows an authorized attacker to deny service over a network.

Categories: Microsoft

CVE-2026-66307 Skype for Business and Lync Denial of Service Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00

Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network.

Categories: Microsoft

CVE-2026-62804 Microsoft Word Remote Code Execution Vulnerability

Microsoft Security Center Center News - Tue, 09/08/2026 - 14:00
External control of file name or path in Microsoft Office Word allows an unauthorized attacker to execute code locally.
Categories: Microsoft

Chromium: CVE-2026-84359 Information leak in Skia

Microsoft Security Center Center News - Thu, 09/03/2026 - 23:59
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

Chromium: CVE-2026-84358 Improper privilege management in Downloads

Microsoft Security Center Center News - Thu, 09/03/2026 - 23:59
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

Chromium: CVE-2026-84357 Improper input validation in Omnibox

Microsoft Security Center Center News - Thu, 09/03/2026 - 23:59
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information.
Categories: Microsoft

Pages

Subscribe to Geeksultant aggregator