Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2024-26253: Windows rndismp6.sys Remote Code Execution Vulnerability

According to the CVSS metric, the attack vector is physical (AV:P). What does that mean for this vulnerability?

An unauthenticated attacker needs to physically connect a specially crafted USB device to exploit this vulnerability.

Microsoft Security Response Center
#vulnerability#windows#rce#auth#Windows Internet Connection Sharing (ICS)#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2024-10488: Chromium: CVE-2024-10488 Use after free in WebRTC