Microsoft Security Response Center
Monthly Patch Tuesday advisories covering Windows, Azure, Office, and the wider Microsoft platform.
7,980 advisories tracked · showing 100
- Jul 25, 2026CVE-2026-64600HighCVSS 7.8CVE-2026-64600
xfs: resample the data fork mapping after cycling ILOCK
- Jul 25, 2026CVE-2026-59677MediumCVE-2026-59677
Process Kill Attack Vector in killall() in seunshare
- Jul 25, 2026CVE-2026-59676MediumCVE-2026-59676
Local File Deletion Attack Vector in rm_rf() in seunshare
- Jul 25, 2026CVE-2026-16807CVE-2026-16807
Chromium: CVE-2026-16807 Out of bounds write in Codecs
- Jul 25, 2026CVE-2026-57989HighCVSS 7.4CVE-2026-57989
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
- Jul 25, 2026CVE-2026-57990HighCVSS 7.4CVE-2026-57990
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
- Jul 25, 2026CVE-2026-57978HighCVSS 5.4CVE-2026-57978
Microsoft Edge (Chromium-based) Spoofing Vulnerability
- Jul 25, 2026CVE-2026-16806CVE-2026-16806
Chromium: CVE-2026-16806 Use after free in WebMCP
- Jul 25, 2026CVE-2026-16805CVE-2026-16805
Chromium: CVE-2026-16805 Use after free in Blink
- Jul 25, 2026CVE-2026-16804CVE-2026-16804
Chromium: CVE-2026-16804 Use after free in Input
- Jul 23, 2026CVE-2026-44510MediumCVSS 6.4CVE-2026-44510
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-43620. Reason: This candidate is a duplicate of CVE-2026-43620. Notes: All CVE users should reference CVE-2026-43620 instead of this candidate.
- Jul 23, 2026CVE-2026-41637LowCVSS 3.7CVE-2026-41637
Degradation of resolution service from improperly accounted client-terminated DNS-over-QUIC queries
- Jul 23, 2026CVE-2026-14586MediumCVSS 5.9CVE-2026-14586
Assertion in libngtcp2 when under pressure in high concurrency DNS-over-QUIC environments
- Jul 23, 2026CVE-2026-54478LowCVSS 3.7CVE-2026-54478
DNS Cookie bypass when combined with proxy-protocol use
- Jul 23, 2026CVE-2026-56444MediumCVSS 5.9CVE-2026-56444
Degradation of resolution service when 'discard-timeout' and 'serve-expired-client-timeout' are combined in unusual configuration
- Jul 23, 2026CVE-2026-56416MediumCVSS 4.8CVE-2026-56416
Possible heap buffer overflow when validator canonicalizes RDATA that contains domain name
- Jul 23, 2026CVE-2026-52863MediumCVSS 5.9CVE-2026-52863
Memory corruption could lead to crash and denial of service
- Jul 23, 2026CVE-2026-44690MediumCVSS 7.5CVE-2026-44690
Cross-zone wildcard cache poisoning via RRSIG.labels manipulation
- Jul 23, 2026CVE-2026-50045MediumCVSS 5.3CVE-2026-50045
'max-global-quota' reset by DNSSEC validation restarts
- Jul 23, 2026CVE-2026-62994LowCVSS 3.7CVE-2026-62994
CoreDNS `k8s_external` headless AXFR can emit an empty transfer batch that panics the `transfer` plugin
- Jul 23, 2026CVE-2026-63263MediumCVSS 6.5CVE-2026-63263
Uncontrolled Resource Consumption in Elasticsearch Leading to Denial of Service
- Jul 23, 2026CVE-2026-39879HighCVSS 7.1CVE-2026-39879
SQL injection in syslog-ng SQL destionation driver
- Jul 23, 2026CVE-2026-64191HighCVSS 7.8CVE-2026-64191
i2c: stub: Reject I2C block transfers with invalid length
- Jul 23, 2026CVE-2026-64206MediumCVSS 5.5CVE-2026-64206
Bluetooth: L2CAP: cancel pending_rx_work before taking conn->lock
- Jul 23, 2026CVE-2026-64190MediumCVSS 5.5CVE-2026-64190
net: team: fix NULL pointer dereference in team_xmit during mode change
- Jul 23, 2026CVE-2026-64205MediumCVSS 5.5CVE-2026-64205
i2c: i801: fix hardware state machine corruption in error path
- Jul 23, 2026CVE-2026-64187MediumCVSS 5.5CVE-2026-64187
xfs: fail recovery on a committed log item with no regions
- Jul 23, 2026CVE-2026-26199MediumCVE-2026-26199
Buffer underflow in `H5Iget_name `/`H5G_get_name` if size is zero
- Jul 23, 2026CVE-2026-38752LowCVSS 2.9CVE-2026-38752
A stack overflow in the evaluate() function (editors/awk.c) of BusyBox commit 371fe9 allows attackers to cause a Denial of Service (DoS) via supplying a crafted AWK script.
- Jul 23, 2026CVE-2026-38753MediumCVSS 4.9CVE-2026-38753
A use-after-free in the awk_sub() function (editors/awk.c) of Busybox v1.38.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted AWK script.
- Jul 23, 2026CVE-2026-64082MediumCVSS 5.3CVE-2026-64082
riscv: Fix register corruption from uninitialized cregs on error
- Jul 23, 2026CVE-2026-63974CriticalCVSS 9.8CVE-2026-63974
Bluetooth: hci_sync: Set HCI_CMD_DRAIN_WORKQUEUE during device close
- Jul 23, 2026CVE-2026-63978HighCVSS 7.1CVE-2026-63978
net/handshake: Drain pending requests at net namespace exit
- Jul 23, 2026CVE-2026-63999CriticalCVSS 9.8CVE-2026-63999
ethtool: rss: fix indir_table and hkey leak on get_rxfh failure
- Jul 23, 2026CVE-2026-63979CriticalCVSS 9.8CVE-2026-63979
net/handshake: hand off the pinned file reference to accept_doit
- Jul 23, 2026CVE-2026-64060MediumCVSS 5.5CVE-2026-64060
netfs: Fix leak of request in netfs_write_begin() error handling
- Jul 23, 2026CVE-2026-64076CriticalCVSS 9.8CVE-2026-64076
netfilter: bridge: eb_tables: close module init race
- Jul 23, 2026CVE-2026-64112HighCVSS 7.4CVE-2026-64112
rbd: eliminate a race in lock_dwork draining on unmap
- Jul 23, 2026CVE-2026-64154HighCVSS 7.1CVE-2026-64154
drm/msm/adreno: Fix a reference leak in a6xx_gpu_init()
- Jul 23, 2026CVE-2026-64111CriticalCVSS 9.8CVE-2026-64111
lsm: hold cred_guard_mutex for lsm_set_self_attr()
- Jul 23, 2026CVE-2026-63963HighCVSS 7.1CVE-2026-63963
usb: typec: tcpm: validate VDO count in Discover Identity ACK handlers
- Jul 23, 2026CVE-2026-63961HighCVSS 7.1CVE-2026-63961
usb: typec: altmodes/displayport: validate count before reading Status Update VDO
- Jul 23, 2026CVE-2026-63881CriticalCVSS 9.8CVE-2026-63881
drm/amdkfd: fix a vulnerability of integer overflow in kfd debugger
- Jul 23, 2026CVE-2026-63960MediumCVSS 5.5CVE-2026-63960
usb: typec: wcove: don't write past struct pd_message in wcove_read_rx_buffer()
- Jul 23, 2026CVE-2026-63964MediumCVSS 5.5CVE-2026-63964
usb: typec: ucsi: ccg: reject firmware images without a ':' record header
- Jul 23, 2026CVE-2026-63983CriticalCVSS 9.8CVE-2026-63983
net/sched: fix packet loop on netem when duplicate is on
- Jul 23, 2026CVE-2026-64078CriticalCVSS 9.8CVE-2026-64078
netfilter: x_tables: add and use xtables_unregister_table_exit
- Jul 23, 2026CVE-2026-63954MediumCVSS 5.5CVE-2026-63954
hpfs: fix a crash if hpfs_map_dnode_bitmap fails
- Jul 23, 2026CVE-2026-64117HighCVSS 7.1CVE-2026-64117
wifi: mac80211: capture fast-RX rate before mesh reuses skb->cb
- Jul 23, 2026CVE-2026-63958CriticalCVSS 9.8CVE-2026-63958
usb: typec: ucsi: validate connector number in ucsi_connector_change()
- Jul 23, 2026CVE-2026-63962MediumCVSS 5.5CVE-2026-63962
usb: typec: tcpm: bound altmode_desc[] per iteration in svdm_consume_modes()
- Jul 23, 2026CVE-2026-64015HighCVSS 7.1CVE-2026-64015
security/keys: fix missed RCU read section on lookup
- Jul 23, 2026CVE-2026-64070CriticalCVSS 9.8CVE-2026-64070
powerpc/hv-gpci: fix preempt count leak in sysfs show paths
- Jul 23, 2026CVE-2026-63959CriticalCVSS 9.8CVE-2026-63959
usb: typec: tcpm/tcpci_maxim: validate header NDO against RX_BYTE_CNT
- Jul 23, 2026CVE-2026-64138CriticalCVSS 9.8CVE-2026-64138
ksmbd: validate SID in parent security descriptor during ACL inheritance
- Jul 23, 2026CVE-2026-64160MediumCVSS 5.8CVE-2026-64160
netfs: Fix potential for tearing in ->remote_i_size and ->zero_point
- Jul 23, 2026CVE-2026-64001MediumCVSS 6.1CVE-2026-64001
ALSA: pcm: oss: Fix setup list UAF on proc write error
- Jul 23, 2026CVE-2026-64079CriticalCVSS 9.8CVE-2026-64079
netfilter: x_tables: allocate hook ops while under mutex
- Jul 23, 2026CVE-2026-64036MediumCVSS 5.5CVE-2026-64036
cgroup/rstat: validate cpu before css_rstat_cpu() access
- Jul 23, 2026CVE-2026-64038MediumCVSS 5.5CVE-2026-64038
hwmon: (lm90) Stop work before releasing hwmon device
- Jul 23, 2026CVE-2026-63827CriticalCVSS 9.8CVE-2026-63827
apparmor: fix use-after-free in rawdata dedup loop
- Jul 23, 2026CVE-2026-53398MediumCVSS 5.5CVE-2026-53398
NFSD: Fix SECINFO_NO_NAME decode error cleanup
- Jul 23, 2026CVE-2026-53383HighCVSS 7.1CVE-2026-53383
ksmbd: reject non-VALID session in compound request branch
- Jul 23, 2026CVE-2026-63814CriticalCVSS 9.8CVE-2026-63814
f2fs: validate ACL entry sizes in f2fs_acl_from_disk()
- Jul 23, 2026CVE-2026-53390HighCVSS 7.1CVE-2026-53390
ksmbd: fix out-of-bounds read in smb_check_perm_dacl()
- Jul 23, 2026CVE-2026-53385MediumCVSS 5.5CVE-2026-53385
vc_screen: fix null-ptr-deref in vcs_notifier() during concurrent vcs_write
- Jul 23, 2026CVE-2026-63802HighCVSS 7.8CVE-2026-63802
blk-cgroup: fix UAF in __blkcg_rstat_flush()
- Jul 23, 2026CVE-2026-63831HighCVSS 7.8CVE-2026-63831
mac802154: llsec: add skb_cow_data() before in-place crypto
- Jul 23, 2026CVE-2026-63804HighCVSS 7.8CVE-2026-63804
gfs2: fix use-after-free in gfs2_qd_dealloc
- Jul 23, 2026CVE-2026-63817HighCVSS 7.1CVE-2026-63817
f2fs: validate compress cache inode only when enabled
- Jul 23, 2026CVE-2026-63797CriticalCVSS 9.8CVE-2026-63797
rpmsg: char: Fix use-after-free on probe error path
- Jul 23, 2026CVE-2026-63800CriticalCVSS 9.8CVE-2026-63800
pNFS: Fix use-after-free in pnfs_update_layout()
- Jul 23, 2026CVE-2026-63823HighCVSS 8.4CVE-2026-63823
keys: Pin request_key_auth payload in instantiate paths
- Jul 23, 2026CVE-2026-63798MediumCVSS 5.5CVE-2026-63798
irqchip/imgpdc: Fix resource leak, add missing chained handler cleanup on remove
- Jul 23, 2026CVE-2026-63824CriticalCVSS 9.8CVE-2026-63824
KEYS: fix overflow in keyctl_pkey_params_get_2()
- Jul 23, 2026CVE-2026-63821MediumCVSS 5.5CVE-2026-63821
wifi: rtw88: usb: fix memory leaks on USB write failures
- Jul 23, 2026CVE-2026-63794HighCVSS 7.8CVE-2026-63794
KVM: SVM: Fix page overflow in sev_dbg_crypt() for ENCRYPT path
- Jul 23, 2026CVE-2026-53388HighCVSS 7.8CVE-2026-53388
fuse: re-lock request before replacing page cache folio
- Jul 23, 2026CVE-2026-63830MediumCVSS 4.4CVE-2026-63830
net: skmsg: preserve sg.copy across SG transforms
- Jul 23, 2026CVE-2026-53384CriticalCVSS 9.8CVE-2026-53384
serial: 8250_dw: unregister 8250 port if clk_notifier_register() fails
- Jul 23, 2026CVE-2026-63807HighCVSS 8.8CVE-2026-63807
KVM: x86/mmu: Ensure hugepage is in by slot before checking max mapping level
- Jul 23, 2026CVE-2026-63835MediumCVSS 4.4CVE-2026-63835
batman-adv: v: prevent OGM aggregation on disabled hardif
- Jul 23, 2026CVE-2026-53387CriticalCVSS 9.8CVE-2026-53387
iio: light: veml6075: add bounds check to veml6075_it_ms index
- Jul 23, 2026CVE-2026-63832HighCVSS 7.8CVE-2026-63832
wifi: mt76: add wcid publish check in mt76_sta_add
- Jul 23, 2026CVE-2026-63818CriticalCVSS 9.8CVE-2026-63818
f2fs: validate orphan inode entry count
- Jul 23, 2026CVE-2026-63858HighCVSS 7.8CVE-2026-63858
netfilter: nf_tables: add hook transactions for device deletions
- Jul 23, 2026CVE-2026-53399MediumCVSS 5.5CVE-2026-53399
nfsd: release layout stid on setlease failure
- Jul 23, 2026CVE-2026-63872HighCVSS 7.5CVE-2026-63872
esp: fix page frag reference leak on skb_to_sgvec failure
- Jul 23, 2026CVE-2026-63871MediumCVSS 6.3CVE-2026-63871
Bluetooth: ISO: Fix data-race on iso_pi fields in hci_get_route calls
- Jul 23, 2026CVE-2026-53400HighCVSS 7.5CVE-2026-53400
i2c: core: fix adapter registration race
- Jul 23, 2026CVE-2026-53368HighCVSS 7.1CVE-2026-53368
f2fs: fix fsck inconsistency caused by incorrect nat_entry flag usage
- Jul 23, 2026CVE-2026-53377MediumCVSS 5.5CVE-2026-53377
drm/msm: always recover the gpu
- Jul 23, 2026CVE-2026-53403CriticalCVSS 9.8CVE-2026-53403
fbdev: Fix fb_new_modelist to prevent null-ptr-deref in fb_videomode_to_var
- Jul 23, 2026CVE-2026-63793HighCVSS 7.5CVE-2026-63793
ntfs: serialize volume label accesses
- Jul 23, 2026CVE-2026-63811MediumCVSS 5.5CVE-2026-63811
f2fs: read COW data with the original inode during atomic write
- Jul 23, 2026CVE-2026-53401HighCVSS 7.0CVE-2026-53401
fbdev: omap2: fix use-after-free in omapfb_mmap
- Jul 23, 2026CVE-2026-63819MediumCVSS 5.0CVE-2026-63819
f2fs: fix to do sanity check on f2fs_get_node_folio_ra()
- Jul 23, 2026CVE-2026-53402HighCVSS 7.1CVE-2026-53402
fbdev: fbcon: fix out-of-bounds read in err_out of fbcon_do_set_font()
- Jul 23, 2026CVE-2026-63853HighCVSS 7.8CVE-2026-63853
drm/amdgpu/vcn: set no_user_fence for VCN v4.0 enc ring
- Jul 23, 2026CVE-2026-63825MediumCVSS 5.5CVE-2026-63825
gcov: use atomic counter updates to fix concurrent access crashes