CVE-2026-66307 Skype for Business and Lync Denial of Service Vulnerability
Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network.
Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network.
Null pointer dereference in Skype for Business allows an authorized attacker to deny service over a network.
Allocation of resources without limits or throttling in ASP.NET Core allows an unauthorized attacker to deny service over a network.
Use after free in Windows Distributed File System (DFS) allows an authorized attacker to deny service over a network.
Improper handling of highly compressed data (data amplification) in ASP.NET Core allows an unauthorized attacker to deny service over a network.
Out-of-bounds read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network.
Out-of-bounds read in Windows DHCP Server allows an authorized attacker to deny service over an adjacent network.
Null pointer dereference in Windows IKE Extension allows an unauthorized attacker to deny service over a network.
CVSS 7.5 CVE-2026-69881 US
Missing release of memory after effective lifetime in Windows DHCP Server allows an authorized attacker to deny service over a network.
Out-of-bounds read in Windows LDAP - Lightweight Directory Access Protocol allows an unauthorized attacker to deny service over a network.
Allocation of resources without limits or throttling in Windows SMB Server allows an authorized attacker to deny service over a network.
Out-of-bounds read in Windows Network File System allows an authorized attacker to deny service over a network.
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Out-of-bounds read in BranchCache allows an unauthorized attacker to deny service over a network.
Out-of-bounds read in Windows iSCSI allows an unauthorized attacker to deny service over a network.
Integer overflow or wraparound in SQL Server allows an authorized attacker to deny service over a network.
Null pointer dereference in Active Directory Domain Services allows an authorized attacker to deny service over a network.
CVSS 6.5 CVE-2026-62762 US
Missing release of memory after effective lifetime in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Use after free in Windows DNS allows an unauthorized attacker to deny service over a network.
Integer overflow or wraparound in SQL Server allows an unauthorized attacker to deny service over a network.
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Access of resource using incompatible type ('type confusion') in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to deny service over a network.
Allocation of resources without limits or throttling in Active Directory Federation Services (AD FS) allows an unauthorized attacker to deny service over a network.
Uncontrolled recursion in Microsoft Exchange Server allows an unauthorized attacker to deny service over a network.
Out-of-bounds read in Windows Message Queuing Queue Manager allows an unauthorized attacker to deny service over a network.
Null pointer dereference in Windows Routing and Remote Access Service (RRAS) allows an authorized attacker to deny service over a network.
Uncaught exception in Windows iSCSI Target Service allows an authorized attacker to deny service over a network.
Integer overflow or wraparound in Windows DNS allows an unauthorized attacker to deny service over a network.
Null pointer dereference in Windows IKE Extension allows an unauthorized attacker to deny service over a network.
Missing release of memory after effective lifetime in Windows TCP/IP allows an unauthorized attacker to deny service over a network.
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows DNS allows an unauthorized attacker to deny service over a network.
Out-of-bounds read in Skype for Business allows an authorized attacker to deny service over a network.