CVE-2020-17103 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
To comprehensively address the vulnerability identified by CVE-2020-17103, Microsoft recommends installing the June 2026 updates for your Windows operating systems.
Categories: Microsoft
CVE-2026-50292 In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution
Information published.
Categories: Microsoft
CVE-2026-46272 coresight: tmc-etr: Fix race condition between sysfs and perf mode
Information published.
Categories: Microsoft
CVE-2026-46250 MIPS: Work around LLVM bug when gp is used as global register variable
Information published.
Categories: Microsoft
CVE-2026-50031 ipmi-oem in FreeIPMI before 1.6.18 has exploitable buffer overflows on response messages. The Intelligent Platform Management Interface (IPMI) specification defines a set of interfaces for platform management. It is implemented by a...
Information published.
Categories: Microsoft
CVE-2026-48959 IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward
Information published.
Categories: Microsoft
CVE-2026-42250 Off-by-One Leading to Out-of-Bounds Write in bzip2
Information published.
Categories: Microsoft
CVE-2025-15649 IO::Uncompress::Unzip versions before 2.215 for Perl propagate uncaught exception when parsing zip header with malformed DOS date
Information published.
Categories: Microsoft
CVE-2026-48962 IO::Compress versions before 2.220 for Perl can execute arbitrary code in File::GlobMapper via an attacker-controlled output glob
Information published.
Categories: Microsoft
CVE-2026-42790 nameConstraints DNS bypass via subject CommonName fallback in public_key hostname verification
Information published.
Categories: Microsoft
CVE-2026-42789 Non-CA certificate accepted as intermediate issuer in public_key path validation
Information published.
Categories: Microsoft
CVE-2026-40510 OpenSC < 0.27.0-rc1 Stack Buffer Overflow via piv_process_history() in card-piv.c
Information published.
Categories: Microsoft
CVE-2026-40528 OpenSC < 0.27.0 Buffer Overrun in do_key_value() via profile.c
Information published.
Categories: Microsoft
CVE-2026-42496 Archive::Tar versions before 3.08 for Perl extract symlinks with attacker controlled targets outside the extraction directory
Information published.
Categories: Microsoft
CVE-2026-39833 Invoking key constraints not enforced in golang.org/x/crypto/ssh/agent
Information published.
Categories: Microsoft
CVE-2026-42501 Malicious module proxy can bypass checksum database in cmd/go
Information published.
Categories: Microsoft
CVE-2026-42499 Quadratic string concatenation in consumePhrase in net/mail
Information published.
Categories: Microsoft
CVE-2026-39836 Panic in Dial and LookupPort when handling NUL byte on Windows in net
Information published.
Categories: Microsoft
CVE-2026-39820 Quadratic string concatentation in consumeComment in net/mail
Information published.
Categories: Microsoft
CVE-2026-33811 Crash when handling long CNAME response in net
Information published.
Categories: Microsoft


