CVE-2026-69859
Time-of-check time-of-use (toctou) race condition in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate
CVSS
7.0
Alto
EPSS
—
KEV
—
Exploit Today
—
0-100
Publicado: 8 sept 2026 · Última mod.: 8 sept 2026 · CWE-191 · CWE-367
Sin historial EPSS suficiente todavía.
Time-of-check time-of-use (toctou) race condition in Windows USB Audio Class driver (usbaudio.sys) allows an authorized attacker to elevate privileges locally.
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-819775.5 MED—
———Acrobat Reader is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a malicious file.4hCVE-2026-663077.5 ALT—
———Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network.5hCVE-2026-784647.0 ALT—
———Time-of-check time-of-use (toctou) race condition in Windows MIDI Service Module allows an authorized attacker to elevate privileges locally.7hCVE-2026-784536.5 MED—
———Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System File allows an unauthorized attacker to disclose information over a network.5hCVE-2026-774885.5 MED—
———Integer underflow (wrap or wraparound) in SQL Server allows an authorized attacker to disclose information locally.5hCVE-2026-729476.4 MED—
———Integer underflow (wrap or wraparound) in Windows File History Service allows an authorized attacker to elevate privileges locally.5h