CVE-2026-56650
Published Jul 14, 2026Heap-based buffer overflow in Windows Network File System allows an authorized attacker to elevate privileges locally.
- evidence mentions
- 4
- Buzz score
- 29.1
CWE archive
52 CVEs tagged with CWE-197 — 3 Critical, 37 High, 11 Medium, 1 Low, 0 Unrated.
Heap-based buffer overflow in Windows Network File System allows an authorized attacker to elevate privileges locally.
Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.
Heap-based buffer overflow in Windows Kernel allows an authorized attacker to elevate privileges locally.
Numeric truncation error in Windows Resilient File System (ReFS) allows an authorized attacker to execute code locally.
A heap buffer overflow could occur in the DTLS 1.3 ACK serialization path before the connecting peer is authenticated. The buffer overflow was due to an integer truncation when co…
LibreOffice can import drawings in the DXF format used by CAD software. A heap buffer overflow existed when importing a DXF polyline. The point count taken from the file was trunc…
Numeric truncation error in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability
Windows Universal Disk Format File System Driver (UDFS) Elevation of Privilege Vulnerability
NLnet Labs Unbound 1.14.0 up to and including version 1.25.0 has a vulnerability that results in heap overflow when encoding multiple NSID and/or DNS Cookie EDNS and/or EDNS Paddi…
Heap-based buffer overflow in Volume Manager Extension Driver allows an authorized attacker to execute code with a physical attack.
In uriparser before 1.0.2, there is pointer difference truncation to int in various places.
uriparser before 1.0.1 has numeric truncation in text range comparison, if an application accepts URIs with a length in gigabytes.
Cap'n Proto is a data interchange format and capability-based RPC system. Prior to 1.4.0, when using Transfer-Encoding: chunked, if a chunk's size parsed to a value of 2^64 or lar…
In Eclipse Paho Go MQTT v3.1 library (paho.mqtt.golang) versions <=1.5.0 UTF-8 encoded strings, passed into the library, may be incorrectly encoded if their length exceeds 65535 b…
Numeric truncation error in Windows Hyper-V allows an authorized attacker to elevate privileges locally.
There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corrupt…
Numeric truncation error in Windows Shell allows an authorized attacker to elevate privileges locally.
SQL Server Native Client Remote Code Execution Vulnerability
Windows KDC Proxy Remote Code Execution Vulnerability
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
Microsoft SQL Server Native Scoring Information Disclosure Vulnerability
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
Azure Kinect SDK Remote Code Execution Vulnerability