← Back

CVE-2026-70091

nvd nist
Published: Sep 8, 2026Modified: Sep 16, 2026

JSON object

Loading...
5.9
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.2 / Impact: 3.6
Source: secure@microsoft.com (Secondary)

Description

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an unauthorized attacker to deny service over a network.

Affected (10)

7 products
Windows 10 1607
Windows 10 1809
Windows Server 2012
Windows Server 2016
Windows Server 2019
Windows Server 2022
Windows Server 2025
Configuration A
10 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Before 10.0.14393.9512
Before 10.0.14393.9512
Microsoft
Before 10.0.17763.9245
Before 10.0.17763.9245
Microsoft
All versions
Version r2
Before 10.0.14393.9512
Before 10.0.17763.9245
Before 10.0.20348.5622
Before 10.0.26100.33438

References (1)

Source: secure@microsoft.com
Vendor AdvisoryPatch

Timeline

No history available yet.