From Our Security Partners
CVE-2026-33840 Win32k Elevation of Privilege Vulnerability
Updated an acknowledgement. This is an informational change only.
CVE-2026-45504 Microsoft Exchange Server Elevation of Privilege Vulnerability
Acknowledgement added. This is an informational change only.
CVE-2026-44967 opentelemetry-cpp: OTLP HTTP exporters read unbounded HTTP response
Information published.
CVE-2026-46331 net/sched: fix pedit partial COW leading to page cache corruption
Information published.
CVE-2026-7383 Possible Heap Buffer Overflow in ASN.1 Multibyte String Conversion
Information published.
CVE-2026-42767 NULL Pointer Dereference in CRMF EncryptedValue Decryption
Information published.
CVE-2026-42766 Possible NULL Dereference in Password-Based CMS Decryption
Information published.
CVE-2026-45446 Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes
Information published.