Security Briefs
Page 132 of 142.
Alerts tracked
3951
Security flaws we track for Upstate SC businesses.
Known exploited
547
On CISA’s list of vulnerabilities attackers are actively using. Patch these first.
New exploited this month
4
Fresh additions to that CISA list since the first of the month.Feeds last synced Oct 9, 2026, 6:01 AM UTC.
Showing page 132 (24 alerts) of 3394.
net: stmmac: Prevent NULL deref when RX memory exhausted
net net: stmmac: Prevent NULL deref when RX memory exhausted (CVE-2026-46110) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft Dynamics 365 On-Premises Remote Code Execution vulnerability
Microsoft Dynamics 365 On-Premises Remote Code Execution vulnerability (CVE-2026-42898) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability (CVE-2026-41088) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability (CVE-2026-26168) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability
Windows Ancillary Function Driver for WinSock Elevation of Privilege vulnerability (CVE-2026-24293) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
net: strparser: fix skb_head leak in strp_abort_strp()
net net: strparser: fix skb_head leak in strp_abort_strp() (CVE-2026-46102) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net: ipv6: fix NOREF dst use in seg6 and rpl lwtunnels
net net: ipv6: fix NOREF dst use in seg6 and rpl lwtunnels (CVE-2026-46099) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net: caif: clear client service pointer on teardown
net net: caif: clear client service pointer on teardown (CVE-2026-46098) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net: bridge: use a stable FDB dst snapshot in RCU readers
net net: bridge: use a stable FDB dst snapshot in RCU readers (CVE-2026-46086) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net: rds: fix MR cleanup on copy error
net net: rds: fix MR cleanup on copy error (CVE-2026-46053) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net: qrtr: ns: Fix use-after-free in driver remove()
net net: qrtr: ns: Fix use-after-free in driver remove() (CVE-2026-46047) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net: qrtr: ns: Free the node during ctrl_cmd_bye()
net net: qrtr: ns: Free the node during ctrl_cmd_bye() (CVE-2026-46038) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net: ks8851: Reinstate disabling of BHs around IRQ handler
net net: ks8851: Reinstate disabling of BHs around IRQ handler (CVE-2026-46031) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net/smc: avoid early lgr access in smc_clc_wait_msg
net net/smc: avoid early lgr access in smc_clc_wait_msg (CVE-2026-46027) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net: qrtr: ns: Limit the maximum number of lookups
net net: qrtr: ns: Limit the maximum number of lookups (CVE-2026-46026) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net: qrtr: ns: Limit the total number of nodes
net net: qrtr: ns: Limit the total number of nodes (CVE-2026-46003) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
of: unittest: fix use-after-free in testdrv_probe()
of of: unittest: fix use-after-free in testdrv_probe() (CVE-2026-45989) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net/sched: taprio: fix NULL pointer dereference in class dump
net net/sched: taprio: fix NULL pointer dereference in class dump (CVE-2026-45845) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net: skbuff: preserve shared-frag marker during coalescing
net net: skbuff: preserve shared-frag marker during coalescing (CVE-2026-46300) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
net: skbuff: propagate shared-frag marker through frag-transfer helpers
net net: skbuff: propagate shared-frag marker through frag-transfer helpers (CVE-2026-43503) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
nspawn in systemd 233 through 259 before 260 vulnerability
In In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted optional config file. (CVE-2026-40226) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
udev in systemd before 260 vulnerability
In In udev in systemd before 260, local root execution can occur via malicious hardware devices and unsanitized kernel output. (CVE-2026-40225) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
Microsoft Defender Remote Code Execution vulnerability
Microsoft Defender Remote Code Execution vulnerability (CVE-2026-45584) was added to Microsoft’s security update guidance. In the Security Updates table, added links to the Release Notes. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
rsync 3.0.1 through 3.4.1 vulnerability
In In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable. (CVE-2026-41035) was added to Microsoft’s security update guidance. Information published. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.
- Vendor:rsync
- Product:In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable.