< BACK TO NEWS
importantSYS.SOURCE: The Hacker News2026-08-12T01:40:55+05:30

Microsoft Addresses 398 Vulnerabilities, Including Actively Exploited Windows Driver Zero-Day

Microsoft released updates addressing 398 vulnerabilities, including a critical Windows driver zero-day (CVE-2026-68820) actively exploited in the wild, and four high-severity unauthenticated remote code execution flaws. The patch prioritizes the zero-day due to its exploitation status, alongside resolving a SharePoint exploit chain and other critical network services vulnerabilities.

Microsoft released its monthly security updates on Tuesday, and one of the flaws it closed is already being used in attacks.

The bug sits in a core Windows kernel driver that handles network socket operations. An attacker with code already running on a machine can use it to escalate to SYSTEM. That patch goes out first.

The flaw is tracked as CVE-2026-68820 (CVSS score: 7.0) and is the only

Read original article

*** END OF TRANSMISSION ***