Microsoft security briefs
3323 published alerts for Microsoft products and services.
Windows Internet Connection Sharing (ICS) Elevation of Privilege vulnerability
Windows Internet Connection Sharing (ICS) Elevation of Privilege vulnerability (CVE-2026-72926) was added to Microsoft’s security update guidance. <p>Use after free in Windows Internet Connection Sharing (ICS) allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Routing and Remote Access Service (RRAS) Elevation of Privilege vulnerability
Windows Routing and Remote Access Service (RRAS) Elevation of Privilege vulnerability (CVE-2026-71353) was added to Microsoft’s security update guidance. <p>Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Remote Access Connection Manager Remote Code Execution vulnerability
Windows Remote Access Connection Manager Remote Code Execution vulnerability (CVE-2026-71352) was added to Microsoft’s security update guidance. <p>Integer underflow (wrap or wraparound) in Windows Remote Access Connection Manager allows an authorized attacker to execute code over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows Routing and Remote Access Service (RRAS) Elevation of Privilege vulnerability
Windows Routing and Remote Access Service (RRAS) Elevation of Privilege vulnerability (CVE-2026-71351) was added to Microsoft’s security update guidance. <p>Double free in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Spaceport.sys Remote Code Execution vulnerability
Windows Spaceport.sys Remote Code Execution vulnerability (CVE-2026-71350) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in Windows Spaceport.sys allows an unauthorized attacker to execute code with a physical attack.</p> If you need help checking exposure, call (864) 335-9223.
Windows Spaceport.sys Remote Code Execution vulnerability
Windows Spaceport.sys Remote Code Execution vulnerability (CVE-2026-71349) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in Windows Spaceport.sys allows an unauthorized attacker to execute code with a physical attack.</p> If you need help checking exposure, call (864) 335-9223.
Windows Spaceport.sys Remote Code Execution vulnerability
Windows Spaceport.sys Remote Code Execution vulnerability (CVE-2026-71348) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in Windows Spaceport.sys allows an unauthorized attacker to execute code with a physical attack.</p> If you need help checking exposure, call (864) 335-9223.
Windows Spaceport.sys Remote Code Execution vulnerability
Windows Spaceport.sys Remote Code Execution vulnerability (CVE-2026-71345) was added to Microsoft’s security update guidance. <p>Out-of-bounds write in Windows Spaceport.sys allows an authorized attacker to execute code locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Remote Access Connection Manager Remote Code Execution vulnerability
Windows Remote Access Connection Manager Remote Code Execution vulnerability (CVE-2026-71343) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to execute code locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Remote Access Connection Manager Elevation of Privilege vulnerability
Windows Remote Access Connection Manager Elevation of Privilege vulnerability (CVE-2026-71342) was added to Microsoft’s security update guidance. <p>Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Partition Management Driver Information Disclosure vulnerability
Windows Partition Management Driver Information Disclosure vulnerability (CVE-2026-71341) was added to Microsoft’s security update guidance. <p>Out-of-bounds read in Windows Partition Management Driver allows an authorized attacker to disclose information locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows File History Service Elevation of Privilege vulnerability
Windows File History Service Elevation of Privilege vulnerability (CVE-2026-71340) was added to Microsoft’s security update guidance. <p>Use after free in Windows File History Service allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Installer Elevation of Privilege vulnerability
Windows Installer Elevation of Privilege vulnerability (CVE-2026-71339) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in Windows Installer allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Failover Cluster Elevation of Privilege vulnerability
Windows Failover Cluster Elevation of Privilege vulnerability (CVE-2026-71338) was added to Microsoft’s security update guidance. <p>Double free in Windows Failover Cluster allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Storage Management Provider Elevation of Privilege vulnerability
Windows Storage Management Provider Elevation of Privilege vulnerability (CVE-2026-71337) was added to Microsoft’s security update guidance. <p>Stack-based buffer overflow in Windows Storage Management Provider allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Work Folder Service Remote Code Execution vulnerability
Windows Work Folder Service Remote Code Execution vulnerability (CVE-2026-71336) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.
Windows NFS Portmapper Elevation of Privilege vulnerability
Windows NFS Portmapper Elevation of Privilege vulnerability (CVE-2026-71334) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in Windows NFS Portmapper allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Remote Access Connection Manager Elevation of Privilege vulnerability
Windows Remote Access Connection Manager Elevation of Privilege vulnerability (CVE-2026-71333) was added to Microsoft’s security update guidance. <p>Use after free in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Secure Socket Tunneling Protocol (SSTP) Elevation of Privilege vulnerability
Windows Secure Socket Tunneling Protocol (SSTP) Elevation of Privilege vulnerability (CVE-2026-71332) was added to Microsoft’s security update guidance. <p>Use after free in Windows Secure Socket Tunneling Protocol (SSTP) allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.
Windows Services for NFS ONCRPC XDR Driver Information Disclosure vulnerability
Windows Services for NFS ONCRPC XDR Driver Information Disclosure vulnerability (CVE-2026-71330) was added to Microsoft’s security update guidance. <p>Exposure of sensitive system information to an unauthorized control sphere in Windows Services for NFS ONCRPC XDR Driver allows an unauthorized attacker to disclose information over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows NTFS Remote Code Execution vulnerability
Windows NTFS Remote Code Execution vulnerability (CVE-2026-71329) was added to Microsoft’s security update guidance. Heap-based buffer overflow in Windows NTFS allows an unauthorized attacker to execute code with a physical attack. If you need help checking exposure, call (864) 335-9223.
Windows Remote Desktop Protocol Information Disclosure vulnerability
Windows Remote Desktop Protocol Information Disclosure vulnerability (CVE-2026-70587) was added to Microsoft’s security update guidance. <p>Improper null termination in Windows Remote Desktop Protocol allows an unauthorized attacker to disclose information over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows Paint Remote Code Execution vulnerability
Windows Paint Remote Code Execution vulnerability (CVE-2026-70586) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in Windows Paint allows an unauthorized attacker to execute code over a network.</p> If you need help checking exposure, call (864) 335-9223.
Windows Services for NFS ONCRPC XDR Driver Remote Code Execution vulnerability
Windows Services for NFS ONCRPC XDR Driver Remote Code Execution vulnerability (CVE-2026-70585) was added to Microsoft’s security update guidance. <p>Use after free in Windows Services for NFS ONCRPC XDR Driver allows an authorized attacker to execute code locally.</p> If you need help checking exposure, call (864) 335-9223.