Windows · Build corrective · Tous les builds Windows
10.0.28000.2113
Advisory MSRCLa build Windows 10.0.28000.2113, publiée le 2026-06-09, corrige 61 CVE, déployée sur 1 SKU.
- Publiée le
- 2026-06-09
- SKU couvertes
- 1
- CVE corrigées
- 61
- KEV CISA
- 0
4 critique · 55 élevé
SKU Windows couvertes par cette build
Les SKU ci-dessous partagent ce numéro de build MSRC. Pousser la KB correspondante les sécurise toutes simultanément.
CVE corrigées par cette build
| CVE |
|---|
|
CVE-2026-41096
CRITICAL 9.8
Windows DNS Client Remote Code Execution Vulnerability |
|
CVE-2026-34329
HIGH 8.8
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability |
|
CVE-2026-40403
CRITICAL 8.8
Windows Graphics Component Remote Code Execution Vulnerability |
|
CVE-2026-40415
HIGH 8.1
Windows TCP/IP Remote Code Execution Vulnerability |
|
CVE-2026-41088
HIGH 7.8
Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privile… |
|
CVE-2026-40399
HIGH 7.8
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows TCP/IP allows an authorized attacker to elevate privileg… |
|
CVE-2026-40397
HIGH 7.8
Heap-based buffer overflow in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-40369
HIGH 7.8
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-35417
HIGH 7.8
Use after free in Windows Win32K - GRFX allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-34336
HIGH 7.8
Integer overflow or wraparound in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-33840
HIGH 7.8
Use after free in Windows Win32K - ICOMP allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-33841
HIGH 7.8
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-34330
HIGH 7.8
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Win32K - GRFX allows an authorized attacker to elevate p… |
|
CVE-2026-33834
HIGH 7.8
Windows Event Logging Service Elevation of Privilege Vulnerability |
|
CVE-2026-34333
HIGH 7.8
Windows Win32k Elevation of Privilege Vulnerability |
|
CVE-2026-34343
HIGH 7.8
Windows Application Identity (AppID) Subsystem Elevation of Privilege Vulnerability |
|
CVE-2026-34344
HIGH 7.8
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
|
CVE-2026-34351
HIGH 7.8
Windows TCP/IP Elevation of Privilege Vulnerability |
|
CVE-2026-35415
HIGH 7.8
Windows Storage Spaces Controller Elevation of Privilege Vulnerability |
|
CVE-2026-35418
HIGH 7.8
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
|
CVE-2026-35421
CRITICAL 7.8
Windows GDI Remote Code Execution Vulnerability |
|
CVE-2026-40377
HIGH 7.8
Microsoft Cryptographic Services Elevation of Privilege Vulnerability |
|
CVE-2026-40407
HIGH 7.8
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2026-40408
HIGH 7.8
Windows WAN ARP Driver Elevation of Privilege Vulnerability |
|
CVE-2026-42896
HIGH 7.8
Windows DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2026-33835
HIGH 7.8
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
|
CVE-2026-33837
HIGH 7.8
Windows TCP/IP Local Elevation of Privilege Vulnerability |
|
CVE-2026-33838
HIGH 7.8
Windows Message Queuing (MSMQ) Elevation of Privilege Vulnerability |
|
CVE-2026-34334
HIGH 7.8
Windows TCP/IP Elevation of Privilege Vulnerability |
|
CVE-2026-34337
HIGH 7.8
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability |
|
CVE-2026-34338
HIGH 7.8
Windows Telephony Service Elevation of Privilege Vulnerability |
|
CVE-2026-40382
HIGH 7.8
Windows Telephony Service Elevation of Privilege Vulnerability |
|
CVE-2026-40398
HIGH 7.8
Windows Remote Desktop Services Elevation of Privilege Vulnerability |
|
CVE-2026-35424
HIGH 7.5
Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability |
|
CVE-2026-40405
HIGH 7.5
Windows TCP/IP Denial of Service Vulnerability |
|
CVE-2026-40406
HIGH 7.5
Windows TCP/IP Information Disclosure Vulnerability |
|
CVE-2026-32161
CRITICAL 7.5
Windows Native WiFi Miniport Driver Remote Code Execution Vulnerability |
|
CVE-2026-40414
HIGH 7.4
Windows TCP/IP Denial of Service Vulnerability |
|
CVE-2026-40413
HIGH 7.4
Windows TCP/IP Denial of Service Vulnerability |
|
CVE-2026-40401
HIGH 7.1
Windows TCP/IP Denial of Service Vulnerability |
|
CVE-2025-54518
HIGH 7.0
Improper isolation of shared resources within the CPU operation cache on Zen 2-based products could allow an attacker to corrupt instructions executed at a dif… |
|
CVE-2026-35416
HIGH 7.0
Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privile… |
|
CVE-2026-34345
HIGH 7.0
Access of resource using incompatible type ('type confusion') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privile… |
|
CVE-2026-33839
HIGH 7.0
Win32k Elevation of Privilege Vulnerability |
|
CVE-2026-34331
HIGH 7.0
Win32k Elevation of Privilege Vulnerability |
|
CVE-2026-34342
HIGH 7.0
Windows Print Spooler Elevation of Privilege Vulnerability |
|
CVE-2026-34347
HIGH 7.0
Windows Win32k Elevation of Privilege Vulnerability |
|
CVE-2026-40410
HIGH 7.0
Windows SMB Client Elevation of Privilege Vulnerability |
|
CVE-2026-42825
HIGH 7.0
Windows Telephony Service Elevation of Privilege Vulnerability |
|
CVE-2026-34340
HIGH 7.0
Windows Projected File System Elevation of Privilege Vulnerability |
|
CVE-2026-34341
HIGH 7.0
Windows Link-Layer Discovery Protocol (LLDP) Elevation of Privilege Vulnerability |
|
CVE-2026-32170
MEDIUM 6.7
Double free in Windows Rich Text Edit allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-21530
HIGH 6.7
Windows Rich Text Edit Elevation of Privilege Vulnerability |
|
CVE-2026-41097
HIGH 6.7
Secure Boot Security Feature Bypass Vulnerability |
|
CVE-2026-35422
HIGH 6.5
Windows TCP/IP Driver Security Feature Bypass Vulnerability |
|
CVE-2026-40380
HIGH 6.2
Windows Volume Manager Extension Driver Remote Code Execution Vulnerability |
|
CVE-2026-48566
MEDIUM 5.5
Out-of-bounds read in Windows DWM Core Library allows an authorized attacker to elevate privileges locally. |
|
CVE-2026-35419
HIGH 5.5
Windows DWM Core Library Information Disclosure Vulnerability |
|
CVE-2026-34339
HIGH 5.5
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability |
|
CVE-2026-35423
HIGH 5.4
Windows 11 Telnet Client Information Disclosure Vulnerability |
|
CVE-2026-32209
HIGH 4.4
Windows Filtering Platform (WFP) Security Feature Bypass Vulnerability |
Déployer ce correctif Windows sur votre flotte
Appaloosa pousse les mises à jour Windows et vérifie leur application sur tout votre parc.