Microsoft Security Center Center News

Subscribe to Microsoft Security Center Center News feed
Updated: 26 min 5 sec ago

CVE-2026-42968 Windows Telephony Server Information Disclosure Vulnerability

Tue, 06/09/2026 - 14:00
Out-of-bounds read in Windows Telephony Service allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-42972 Windows Hyper-V Information Disclosure Vulnerability

Tue, 06/09/2026 - 14:00
Exposure of sensitive information to an unauthorized actor in Windows Hyper-V allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-42969 Windows Push Notification Information Disclosure Vulnerability

Tue, 06/09/2026 - 14:00
Use of uninitialized resource in Windows Push Notifications allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-42971 Windows Push Notification Information Disclosure Vulnerability

Tue, 06/09/2026 - 14:00
Use of uninitialized resource in Windows Push Notifications allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-42970 Windows Push Notification Information Disclosure Vulnerability

Tue, 06/09/2026 - 14:00
Use of uninitialized resource in Windows Push Notifications allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-42973 Windows Push Notification Information Disclosure Vulnerability

Tue, 06/09/2026 - 14:00
Use of uninitialized resource in Windows Push Notifications allows an authorized attacker to disclose information locally.
Categories: Microsoft

CVE-2026-42984 Windows Kernel Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Use after free in Windows Kernel allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-42981 Windows Performance Monitor Remote Code Execution Vulnerability

Tue, 06/09/2026 - 14:00
Integer underflow (wrap or wraparound) in Windows Performance Monitor allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-42974 Windows Performance Monitor Remote Code Execution Vulnerability

Tue, 06/09/2026 - 14:00
Integer underflow (wrap or wraparound) in Windows Performance Monitor allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-42986 Microsoft Graphics Component Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Use after free in Microsoft Graphics Component allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-42978 Windows Push Notifications Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-42977 Windows Push Notifications Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-42979 Windows Push Notifications Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-42991 Windows Push Notifications Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Push Notifications allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-42989 Winlogon Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Improper link resolution before file access ('link following') in Winlogon allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-44809 Windows Common Log File System Driver Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-44810 Microsoft Cryptographic Services Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Improper authentication in Windows Cryptographic Services allows an unauthorized attacker to elevate privileges locally.
Categories: Microsoft

CVE-2026-42992 Remote Desktop Client Remote Code Execution Vulnerability

Tue, 06/09/2026 - 14:00
Heap-based buffer overflow in Remote Desktop Client allows an unauthorized attacker to execute code over a network.
Categories: Microsoft

CVE-2026-44805 Windows Network Controller (NC) Host Agent Denial of Service Vulnerability

Tue, 06/09/2026 - 14:00
Use after free in Windows Network Controller (NC) Host Agent allows an authorized attacker to deny service locally.
Categories: Microsoft

CVE-2026-44811 Windows DWM Core Library Elevation of Privilege Vulnerability

Tue, 06/09/2026 - 14:00
Use after free in Windows DWM Core Library allows an authorized attacker to elevate privileges locally.
Categories: Microsoft

Pages