Articles from February 2026
Browse all Windows news articles published in February 2026
CVE-2025-7519: Polkit XML Parser Depth Bug Threatens Linux Security, Patch Now
A critical vulnerability in the Polkit authorization framework, tracked as CVE-2025-7519, has been discovered that could allow attackers to crash the system's authorization service through a...
GnuTLS CVE-2025-6395: Critical DoS Vulnerability Patch Guide & Security Impact
A critical security vulnerability has been identified in GnuTLS, the widely used open-source implementation of the TLS, SSL, and DTLS protocols. Tracked as CVE-2025-6395, this flaw allows a remote...
Microsoft Confirms Azure Linux Affected by Apache HTTP Server Flaw, but Broader Risk Remains Unassessed
Microsoft has confirmed that its Azure Linux distribution includes a vulnerable version of the Apache HTTP Server, specifically targeted by CVE-2025-54090—a denial-of-service bug that can crash...
Patch Your Azure Linux Systems Now: Microsoft Confirms Vim Vulnerability (CVE-2025-53905)
Microsoft has confirmed that a path‑traversal vulnerability in the Vim text editor’s tar plug‑in, tracked as CVE‑2025‑53905, affects its Azure Linux distribution. An attacker who tricks a...
Helm Bug Lets Attackers Hijack Systems via Chart.lock Symlink – Patch Now
A critical vulnerability in the Kubernetes package manager Helm allows malicious actors to take over developer workstations and CI/CD pipelines. Tracked as CVE-2025-53547, the flaw exploits how Helm...
Microsoft Flags libssh Double-Free in Azure Linux, But the Real Impact May Be Broader
Microsoft has confirmed that Azure Linux ships with a vulnerable version of libssh, exposing systems to a memory corruption bug tracked as CVE-2025-5351. The advisory, posted on the Microsoft...
Oracle Patches Critical MySQL Replication Bug That Allows Remote Database Crashes
Oracle’s July 2025 Critical Patch Update addresses CVE-2025-53023, a denial-of-service vulnerability in MySQL replication that gives authenticated attackers a reliable way to crash database servers...
Apache HTTP Server CVE-2025-53020: Critical DoS Vulnerability in HTTP/2 Implementation
The Apache Software Foundation has disclosed a critical denial-of-service vulnerability in Apache HTTP Server's HTTP/2 implementation that could allow attackers to crash web servers by exploiting...
Patch MySQL CVE-2025-50101: Versions 8.0.42 and 8.4.4 Fix Server Crash Risk
A critical denial-of-service vulnerability in Oracle's MySQL Server, tracked as CVE-2025-50101, has been disclosed, posing significant risks to database administrators and organizations relying on...
CVE-2025-50083: Critical MySQL DoS Vulnerability Threatens Database Stability
A newly disclosed critical vulnerability in Oracle's MySQL Server, tracked as CVE-2025-50083, has security administrators and database professionals scrambling to assess their exposure. This...
CVE-2025-49809: Critical MTR Privilege Escalation Bug Fixed - Windows Security Alert
A critical security vulnerability in the widely-used network diagnostic tool MTR (My TraceRoute) has been patched after researchers discovered it could allow attackers to execute arbitrary code with...
CVE-2025-38348: Linux Kernel p54 USB Driver Buffer Overflow Threat & Azure Linux Impact
A newly disclosed vulnerability in the Linux kernel, tracked as CVE-2025-38348, has raised significant security concerns, particularly for systems using specific wireless hardware and cloud...