CVE-2026-19667
If an attacker-controlled authoritative server can produce a negative answer that is exactly 65536 bytes, then a flaw in `named` results in
CVSS
7.5
High
EPSS
—
KEV
—
Exploit Today
—
0-100
Published: Sep 16, 2026 · Last modified: Sep 16, 2026 · CWE-197
Not enough EPSS history yet.
If an attacker-controlled authoritative server can produce a negative answer that is exactly 65536 bytes, then a flaw in `named` results in a negative cache entry of 0 bytes. When this entry is subsequently read, `named` aborts. This issue affects BIND 9 versions 9.11.0 through 9.18.50, 9.20.0 through 9.20.27, 9.21.0 through 9.21.25, 9.11.3-S1 through 9.18.50-S1, and 9.20.9-S1 through 9.20.27-S1.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-76151——
———Out-of-bounds read (buffer over-read) in the HTTP Cache-Control response header parsing in the QtNetwork module in Qt Group Qt 6.0.0 through 6.8.8, and 6.9.0 through 6.11.1, allows remote attackers to cause a denial of service (application crash) via an excessively large Cache-Control header value returned by an untrusted or compromised HTTP server to an application using QNetworkAccessManager. Only the client side of the connection is affected and 32-bit builds are not affected; the out-of-bounds access is read-only, with no information disclosure and no code execution.7hCVE-2026-875299.6 CRI38.8%
——12Numeric truncation error in Media in Google Chrome prior to 153.0.8010.36 allowed a remote attacker to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)7dCVE-2026-785128.8 HIG55.3%
——17Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code over a network.7dCVE-2026-698227.8 HIG24.7%
——7Numeric truncation error in Windows Kerberos allows an authorized attacker to elevate privileges locally.7dCVE-2026-695787.0 HIG9.9%
——3Numeric truncation error in Windows Kernel allows an authorized attacker to elevate privileges locally.2dCVE-2026-695357.8 HIG15.9%
——5Numeric truncation error in Windows Spaceport.sys allows an authorized attacker to elevate privileges locally.7d