Windows · Build corrective · Tous les builds Windows
10.0.14393.9060
Advisory MSRCLa build Windows 10.0.14393.9060, publiée le 2026-08-27, corrige 87 CVE, dont 1 activement exploitée (CISA KEV), déployée sur 3 SKU.
- Publiée le
- 2026-08-27
- SKU couvertes
- 3
- CVE corrigées
- 87
- KEV CISA
- 1
2 critique · 83 élevé
SKU Windows couvertes par cette build
Les SKU ci-dessous partagent ce numéro de build MSRC. Pousser la KB correspondante les sécurise toutes simultanément.
CVE corrigées par cette build
| CVE |
|---|
|
CVE-2026-33824
CRITICAL 9.8
KEV
Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network. |
|
CVE-2026-32225
HIGH 8.8
Protection mechanism failure in Windows Shell allows an unauthorized attacker to bypass a security feature over a network. |
|
CVE-2026-26167
HIGH 8.8
Windows Push Notifications Elevation of Privilege Vulnerability |
|
CVE-2026-32157
CRITICAL 8.8
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2026-26178
HIGH 8.8
Windows Advanced Rasterization Platform Elevation of Privilege Vulnerability |
|
CVE-2026-27928
HIGH 8.7
Windows Hello Security Feature Bypass Vulnerability |
|
CVE-2026-32091
HIGH 8.4
Microsoft Brokering File System Elevation of Privilege Vulnerability |
|
CVE-2026-33827
HIGH 8.1
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an unauthorized attacker to execute code o… |
|
CVE-2026-33826
HIGH 8.0
Improper input validation in Windows Active Directory allows an authorized attacker to execute code over an adjacent network. |
|
CVE-2026-27912
HIGH 8.0
Windows Kerberos Elevation of Privilege Vulnerability |
|
CVE-2026-33098
HIGH 7.8
Use after free in Windows Container Isolation FS Filter Driver allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-32154
HIGH 7.8
Use after free in Desktop Window Manager allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-26160
HIGH 7.8
Remote Desktop Licensing Service Elevation of Privilege Vulnerability |
|
CVE-2026-26162
HIGH 7.8
Windows OLE Elevation of Privilege Vulnerability |
|
CVE-2026-26180
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2026-26183
HIGH 7.8
Remote Access Management service/API (RPC server) Elevation of Privilege Vulnerability |
|
CVE-2026-27915
HIGH 7.8
Windows UPnP Device Host Elevation of Privilege Vulnerability |
|
CVE-2026-27919
HIGH 7.8
Windows UPnP Device Host Elevation of Privilege Vulnerability |
|
CVE-2026-32089
HIGH 7.8
Windows Speech Brokered Api Elevation of Privilege Vulnerability |
|
CVE-2026-32090
HIGH 7.8
Windows Speech Brokered Api Elevation of Privilege Vulnerability |
|
CVE-2026-26156
HIGH 7.8
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2026-26159
HIGH 7.8
Remote Desktop Licensing Service Elevation of Privilege Vulnerability |
|
CVE-2026-26163
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2026-26170
HIGH 7.8
PowerShell Elevation of Privilege Vulnerability |
|
CVE-2026-26176
HIGH 7.8
Windows Client Side Caching driver (csc.sys) Elevation of Privilege Vulnerability |
|
CVE-2026-27909
HIGH 7.8
Windows Search Service Elevation of Privilege Vulnerability |
|
CVE-2026-27910
HIGH 7.8
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2026-27911
HIGH 7.8
Windows User Interface Core Elevation of Privilege Vulnerability |
|
CVE-2026-27914
HIGH 7.8
Microsoft Management Console Elevation of Privilege Vulnerability |
|
CVE-2026-27916
HIGH 7.8
Windows UPnP Device Host Elevation of Privilege Vulnerability |
|
CVE-2026-27920
HIGH 7.8
Windows UPnP Device Host Elevation of Privilege Vulnerability |
|
CVE-2026-27923
HIGH 7.8
Desktop Window Manager Elevation of Privilege Vulnerability |
|
CVE-2026-32077
HIGH 7.8
Windows UPnP Device Host Elevation of Privilege Vulnerability |
|
CVE-2026-32164
HIGH 7.8
Windows User Interface Core Elevation of Privilege Vulnerability |
|
CVE-2026-32183
HIGH 7.8
Windows Snipping Tool Remote Code Execution Vulnerability |
|
CVE-2026-26168
HIGH 7.8
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
|
CVE-2026-27913
HIGH 7.7
Windows BitLocker Security Feature Bypass Vulnerability |
|
CVE-2026-26154
HIGH 7.5
Windows Server Update Service (WSUS) Tampering Vulnerability |
|
CVE-2026-32071
HIGH 7.5
Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability |
|
CVE-2026-32156
HIGH 7.4
Windows UPnP Device Host Remote Code Execution Vulnerability |
|
CVE-2026-32149
HIGH 7.3
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2026-26151
HIGH 7.1
Remote Desktop Spoofing Vulnerability |
|
CVE-2025-65018
HIGH 7.1
LIBPNG is vulnerable to a heap buffer overflow in `png_combine_row` triggered via `png_image_finish_read` |
|
CVE-2025-64720
HIGH 7.1
LIBPNG is vulnerable to a buffer overflow in `png_image_read_composite` via incorrect palette premultiplication |
|
CVE-2026-33104
HIGH 7.0
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate p… |
|
CVE-2026-33099
HIGH 7.0
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-33100
HIGH 7.0
Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-26174
HIGH 7.0
Windows Server Update Service (WSUS) Elevation of Privilege Vulnerability |
|
CVE-2026-27908
HIGH 7.0
Windows TDI Translation Driver (tdx.sys) Elevation of Privilege Vulnerability |
|
CVE-2026-27917
HIGH 7.0
Windows WFP NDIS Lightweight Filter Driver (wfplwfs.sys) Elevation of Privilege Vulnerability |
|
CVE-2026-27921
HIGH 7.0
Windows TDI Translation Driver (tdx.sys) Elevation of Privilege Vulnerability |
|
CVE-2026-27929
HIGH 7.0
Windows LUA File Virtualization Filter Driver Elevation of Privilege Vulnerability |
|
CVE-2026-32073
HIGH 7.0
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
|
CVE-2026-32075
HIGH 7.0
Windows UPnP Device Host Elevation of Privilege Vulnerability |
|
CVE-2026-32082
HIGH 7.0
Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability |
|
CVE-2026-32083
HIGH 7.0
Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability |
|
CVE-2026-32087
HIGH 7.0
Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability |
|
CVE-2026-32093
HIGH 7.0
Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability |
|
CVE-2026-26152
HIGH 7.0
Microsoft Cryptographic Services Elevation of Privilege Vulnerability |
|
CVE-2026-26173
HIGH 7.0
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
|
CVE-2026-26177
HIGH 7.0
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
|
CVE-2026-26182
HIGH 7.0
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
|
CVE-2026-27922
HIGH 7.0
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
|
CVE-2026-32068
HIGH 7.0
Windows Simple Search and Discovery Protocol (SSDP) Service Elevation of Privilege Vulnerability |
|
CVE-2026-32070
HIGH 7.0
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2026-32080
HIGH 7.0
Windows WalletService Elevation of Privilege Vulnerability |
|
CVE-2026-32086
HIGH 7.0
Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability |
|
CVE-2026-32150
HIGH 7.0
Windows Function Discovery Service (fdwsd.dll) Elevation of Privilege Vulnerability |
|
CVE-2026-0390
HIGH 6.7
UEFI Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2026-26155
HIGH 6.5
Microsoft Local Security Authority Subsystem Service Information Disclosure Vulnerability |
|
CVE-2026-27925
HIGH 6.5
Windows UPnP Device Host Information Disclosure Vulnerability |
|
CVE-2026-32151
HIGH 6.5
Windows Shell Information Disclosure Vulnerability |
|
CVE-2026-32072
HIGH 6.2
Active Directory Spoofing Vulnerability |
|
CVE-2026-26169
HIGH 6.1
Windows Kernel Memory Information Disclosure Vulnerability |
|
CVE-2026-25250
MEDIUM 6.0
EAZ EazyFix 12.9 allows a Security Feature Bypass related to a "Missing Cryptographic Step" associated with "Secure Boot disable." |
|
CVE-2026-23670
HIGH 5.7
Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability |
|
CVE-2026-32081
HIGH 5.5
Package Catalog Information Disclosure Vulnerability |
|
CVE-2026-32085
HIGH 5.5
Remote Procedure Call Information Disclosure Vulnerability |
|
CVE-2026-32217
HIGH 5.5
Windows Kernel Information Disclosure Vulnerability |
|
CVE-2026-32212
HIGH 5.5
Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability |
|
CVE-2026-27930
HIGH 5.5
Windows GDI Information Disclosure Vulnerability |
|
CVE-2026-32079
HIGH 5.5
Web Account Manager Information Disclosure Vulnerability |
|
CVE-2026-32084
HIGH 5.5
Windows Print Spooler Information Disclosure Vulnerability |
|
CVE-2026-32214
HIGH 5.5
Universal Plug and Play (upnp.dll) Information Disclosure Vulnerability |
|
CVE-2026-26175
HIGH 4.6
Windows Boot Manager Security Feature Bypass Vulnerability |
|
CVE-2026-20928
HIGH 4.6
Windows Recovery Environment Security Feature Bypass Vulnerability |
|
CVE-2026-33829
MEDIUM 4.3
Exposure of sensitive information to an unauthorized actor in Windows Snipping Tool allows an unauthorized attacker to perform spoofing over a network. |
Déployer ce correctif Windows sur votre flotte
Appaloosa pousse les mises à jour Windows et vérifie leur application sur tout votre parc.