Skip to main content
Back to Security Briefs

Windows Local Security Authority Subsystem Service (LSASS) Denial of Service vulnerabilities

1 published alerts for Microsoft Windows Local Security Authority Subsystem Service (LSASS) Denial of Service.

Microsoft MSRC

CVE-2026-40378

Windows Local Security Authority Subsystem Service (LSASS) Denial of Service vulnerability

Windows Local Security Authority Subsystem Service (LSASS) Denial of Service vulnerability (CVE-2026-40378) was added to Microsoft’s security update guidance. Memory allocation with excessive size value in Windows Local Security Authority Subsystem Service (LSASS) allows an unauthorized attacker to deny service over a network. PremierePC tracks MSRC advisories for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.