DE EN FR
hlukh.ch Updated: 2026-02-25T09:01:16.562Z · week: 2024-W02

Security Warnings

Curated from public advisories. Focus: visibility, context and fast export — no clickbait.

Latest warnings
CVE-2024-20672
.NET Denial of Service Vulnerability
2026‑02‑20 · CVE-2024-20672
MSRC 2026‑02‑20 High
CVE-2024-21312
.NET Framework Denial of Service Vulnerability
2026‑02‑20 · CVE-2024-21312
MSRC 2026‑02‑20 High
CVE-2024-22705
An issue was discovered in ksmbd in the Linux kernel before 6.6.10. smb2_get_data_area_len in fs/smb/server/smb2misc.c can cause an smb_strndup_from_utf16 out-of-bounds access because the relationship between Name data and CreateContexts data is mishandled.
2026‑02‑20 · CVE-2024-22705
MSRC 2026‑02‑20 High
CVE-2023-6040
An out-of-bounds access vulnerability involving netfilter was reported and fixed as: f1082dd31fe4 (netfilter: nf_tables: Reject tables of unsupported family)
2026‑02‑20 · CVE-2023-6040
MSRC 2026‑02‑20 High
CVE-2024-20676
Azure Storage Mover Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2024-20676
MSRC 2026‑02‑20 High
CVE-2024-0208
Improper Handling of Missing Values in Wireshark
2026‑02‑20 · CVE-2024-0208
MSRC 2026‑02‑20 High
CVE-2023-51042
In the Linux kernel before 6.4.12 amdgpu_cs_wait_all_fences in drivers/gpu/drm/amd/amdgpu/amdgpu_cs.c has a fence use-after-free.
2026‑02‑20 · CVE-2023-51042
MSRC 2026‑02‑20 High
CVE-2023-51043
In the Linux kernel before 6.4.5 drivers/gpu/drm/drm_atomic.c has a use-after-free during a race condition between a nonblocking atomic commit and a driver unload.
2026‑02‑20 · CVE-2023-51043
MSRC 2026‑02‑20 High
CVE-2022-2602
io_uring UAF Unix SCM garbage collection
2026‑02‑20 · CVE-2022-2602
MSRC 2026‑02‑20 High
CVE-2022-2586
It was discovered that a nft object or expression could reference a nft set on a different nft table leading to a use-after-free once that table was deleted.
2026‑02‑20 · CVE-2022-2586
MSRC 2026‑02‑20 High
CVE-2022-2588
It was discovered that the cls_route filter implementation in the Linux kernel would not remove an old filter from the hashtable before freeing it if its handle had the value 0.
2026‑02‑20 · CVE-2022-2588
MSRC 2026‑02‑20 High
CVE-2022-2585
It was discovered that when exec'ing from a non-leader thread armed POSIX CPU timers would be left on a list but freed leading to a use-after-free.
2026‑02‑20 · CVE-2022-2585
MSRC 2026‑02‑20 High
CVE-2023-6270
Kernel: aoe: improper reference count leads to use-after-free vulnerability
2026‑02‑20 · CVE-2023-6270
MSRC 2026‑02‑20 High
CVE-2024-0565
Kernel: cifs filesystem decryption improper input validation remote code execution vulnerability in function receive_encrypted_standard of client
2026‑02‑20 · CVE-2024-0565
MSRC 2026‑02‑20 High
CVE-2023-6531
Kernel: gc's deletion of an skb races with unix_stream_read_generic() leading to uaf
2026‑02‑20 · CVE-2023-6531
MSRC 2026‑02‑20 High
CVE-2024-0646
Kernel: ktls overwrites readonly memory pages when using function splice with a ktls socket as destination
2026‑02‑20 · CVE-2024-0646
MSRC 2026‑02‑20 High
CVE-2024-0562
Kernel: use-after-free after removing device in wb_inode_writeback_end in mm/page-writeback.c
2026‑02‑20 · CVE-2024-0562
MSRC 2026‑02‑20 High
CVE-2024-0775
Kernel: use-after-free while changing the mount option in __ext4_remount leading
2026‑02‑20 · CVE-2024-0775
MSRC 2026‑02‑20 High
CVE-2023-52356
Libtiff: segment fault in libtiff in tiffreadrgbatileext() leading to denial of service
2026‑02‑20 · CVE-2023-52356
MSRC 2026‑02‑20 High
CVE-2023-49568
Maliciously crafted Git server replies can cause DoS on go-git clients
2026‑02‑20 · CVE-2023-49568
MSRC 2026‑02‑20 High
CVE-2024-20687
Microsoft AllJoyn API Denial of Service Vulnerability
2026‑02‑20 · CVE-2024-20687
MSRC 2026‑02‑20 High
CVE-2024-20653
Microsoft Common Log File System Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2024-20653
MSRC 2026‑02‑20 High
CVE-2024-21385
Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2024-21385
MSRC 2026‑02‑20 High
CVE-2024-20661
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
2026‑02‑20 · CVE-2024-20661
MSRC 2026‑02‑20 High
CVE-2024-20654
Microsoft ODBC Driver Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2024-20654
MSRC 2026‑02‑20 High
CVE-2024-20677
Microsoft Office Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2024-20677
MSRC 2026‑02‑20 High
CVE-2024-21318
Microsoft SharePoint Server Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2024-21318
MSRC 2026‑02‑20 High
CVE-2024-20658
Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2024-20658
MSRC 2026‑02‑20 High
CVE-2024-0056
Microsoft.Data.SqlClient and System.Data.SqlClient SQL Data Provider Security Feature Bypass Vulnerability
2026‑02‑20 · CVE-2024-0056
MSRC 2026‑02‑20 High
CVE-2024-0209
NULL Pointer Dereference in Wireshark
2026‑02‑20 · CVE-2024-0209
MSRC 2026‑02‑20 High
CVE-2024-21803
Possible UAF in bt_accept_poll in Linux kernel
2026‑02‑20 · CVE-2024-21803
MSRC 2026‑02‑20 High
CVE-2024-21307
Remote Desktop Client Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2024-21307
MSRC 2026‑02‑20 High
CVE-2024-0745
The WebAudio `OscillatorNode` object was susceptible to a stack buffer overflow. This could have led to a potentially exploitable crash. This vulnerability affects Firefox < 122.
2026‑02‑20 · CVE-2024-0745
MSRC 2026‑02‑20 High
CVE-2024-20656
Visual Studio Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2024-20656
MSRC 2026‑02‑20 High
CVE-2024-20683
Win32k Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2024-20683
MSRC 2026‑02‑20 High
CVE-2024-20686
Win32k Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2024-20686
MSRC 2026‑02‑20 High
CVE-2024-21310
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2024-21310
MSRC 2026‑02‑20 High
CVE-2024-20682
Windows Cryptographic Services Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2024-20682
MSRC 2026‑02‑20 High
CVE-2024-20657
Windows Group Policy Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2024-20657
MSRC 2026‑02‑20 High
CVE-2024-20652
Windows HTML Platforms Security Feature Bypass Vulnerability
2026‑02‑20 · CVE-2024-20652
MSRC 2026‑02‑20 High
CVE-2024-20700
Windows Hyper-V Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2024-20700
MSRC 2026‑02‑20 High
CVE-2024-20674
Windows Kerberos Security Feature Bypass Vulnerability
2026‑02‑20 · CVE-2024-20674
MSRC 2026‑02‑20 High
CVE-2024-20698
Windows Kernel Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2024-20698
MSRC 2026‑02‑20 High
CVE-2024-21309
Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2024-21309
MSRC 2026‑02‑20 High
CVE-2024-20696
Windows libarchive Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2024-20696
MSRC 2026‑02‑20 High
CVE-2024-20697
Windows libarchive Remote Code Execution Vulnerability
2026‑02‑20 · CVE-2024-20697
MSRC 2026‑02‑20 High
CVE-2024-20681
Windows Subsystem for Linux Elevation of Privilege Vulnerability
2026‑02‑20 · CVE-2024-20681
MSRC 2026‑02‑20 High
CVE-2023-27524
Apache Superset Insecure Default Initialization of Resource Vulnerability
2024‑01‑08 · CVE-2023-27524
CISA-KEV 2024‑01‑08 High
CVE-2023-41990
Apple Multiple Products Code Execution Vulnerability
2024‑01‑08 · CVE-2023-41990
CISA-KEV 2024‑01‑08 High
CVE-2016-20017
D-Link DSL-2750B Devices Command Injection Vulnerability
2024‑01‑08 · CVE-2016-20017
CISA-KEV 2024‑01‑08 High
Page 1