CVE-2025-26651 Windows Local Session Manager (LSM) Denial of Service Vulnerability
Published April 8, 2025
Exposed dangerous method or function in Windows Local Session Manager (LSM) allows an authorized attacker to deny service over a network.
Published April 8, 2025
Exposed dangerous method or function in Windows Local Session Manager (LSM) allows an authorized attacker to deny service over a network.
Published April 8, 2025
Improper link resolution before file access (‘link following’) in Windows Update Stack allows an authorized attacker to elevate privileges locally.
Published April 8, 2025
Access of resource using incompatible type (‘type confusion’) in Microsoft Office allows an unauthorized attacker to execute code locally.
Published April 8, 2025
Heap-based buffer overflow in Windows Telephony Service allows an unauthorized attacker to execute code over a network.
Published April 8, 2025
Heap-based buffer overflow in Windows Media allows an authorized attacker to execute code locally.
Published April 8, 2025
Improper input validation in Microsoft Office Word allows an unauthorized attacker to bypass a security feature over a network.
Published April 8, 2025
Out-of-bounds read in Windows NTFS allows an unauthorized attacker to elevate privileges locally.
Published April 8, 2025
Use after free in Remote Desktop Gateway Service allows an unauthorized attacker to execute code over a network.
Published April 8, 2025
Improper input validation in Windows Kerberos allows an unauthorized attacker to elevate privileges over a network.
Published April 8, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to disclose information over a network.
This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.