Security Alerts
The latest Security Alerts coverage — news, analysis, and updates from the WindowsNews.AI desk.
CVE-2026-43398: AMDGPU Kernel Driver Bug Exposes Linux Systems to OOM Denial of Service
A newly published Linux kernel vulnerability tracked as CVE-2026-43398 allows local attackers to trigger out-of-memory (OOM) conditions by exploiting a flaw in the AMDGPU driver’s user queue wait...
CVE-2026-43400: AMDGPU Driver Flaw Exposes Linux Systems to OOM Denial of Service
A newly disclosed vulnerability in AMD's open-source amdgpu driver for Linux can be exploited by local attackers to trigger out-of-memory (OOM) conditions, causing system-wide denial-of-service....
Batched processing patch stops Linux kernel hangs from KASAN vmalloc RCU stalls
A serious availability vulnerability in the Linux kernel surfaced publicly on May 8, 2026, when the National Vulnerability Database published CVE-2026-43292. The advisory describes a flaw in the...
AMD Linux Display Driver Flaw (CVE-2026-43305) Patched After Causing System Hangs
A newly disclosed vulnerability in the Linux kernel’s AMD display driver can freeze or hang systems, prompting a swift patch release and an unusual spotlight in Microsoft’s May 2026 Security...
CVE-2026-43344: Intel Uncore Flaw Hits WSL2, Hyper-V, Azure VMs
On May 8, 2026, a narrow but dangerous vulnerability was patched in the Linux kernel that affects the Intel uncore performance monitoring unit (PMU). The flaw, tracked as CVE-2026-43344, could allow...
Linux spidev deadlock CVE-2026-43319 freezes WSL2, Hyper-V VMs using SPI devices
A newly disclosed Linux kernel vulnerability—CVE-2026-43319—exposes a nasty deadlock in the spidev subsystem, one that could freeze systems that rely on SPI devices. Published on May 8, 2026, the...
CVE-2026-43306: New Linux BPF Crypto Bug Triggers Kernel Crash Under CFI — WSL2 and Azure at Risk
The Linux kernel’s BPF crypto subsystem contains a type-mismatch vulnerability that instantly crashes the host when Control Flow Integrity (CFI) enforcement is active. Tracked as CVE-2026-43306 and...
CVE-2026-43300: Linux DRM NULL Pointer Flaw Flagged by Microsoft for Windows Environments
Microsoft's Security Update Guide has brought an unusual Linux kernel vulnerability into the spotlight on May 8, 2026. CVE-2026-43300, a NULL pointer dereference in the Direct Rendering Manager (DRM)...
Azure Linux 3.0 Admins: Patch Critical AMD eDP Kernel Flaw Now
Microsoft has released an out-of-band patch for a critical kernel vulnerability tracked as CVE-2026-43320, which threatens Azure Linux 3.0 virtual machines equipped with AMD graphics processors. The...
CVE-2026-43474: Why This Linux Kernel Bug Is on Microsoft’s Radar and What Windows Teams Need to Do
Microsoft’s Security Update Guide now tracks a newly disclosed Linux kernel vulnerability, CVE-2026-43474, published in early May 2026. The flaw stems from an uninitialized flags_valid field before...
CVE-2026-43010: Critical Linux Kernel eBPF Flaw Exposes WSL and Container Workloads to Privilege Escalation
The National Vulnerability Database published CVE-2026-43010 on May 1, 2026, flagging a serious flaw in the Linux kernel's BPF subsystem. The vulnerability resides in the kprobe.multi attachment...
CVE-2026-43052 Linux Wi‑Fi Flaw Threatens Windows Fleets via WSL
On May 1, 2026, kernel.org published a security advisory for CVE-2026-43052, a high-severity vulnerability in the Linux kernel’s Wi-Fi stack. The flaw, rated “High” with a local attack vector,...