Articles from May 2026
Browse all Windows news articles published in May 2026
CVE-2026-43019 Linux Bluetooth Bug: WSL2 Users at Risk, Patch Now
The National Vulnerability Database (NVD) published CVE-2026-43019 on May 1, 2026, revealing a high-severity use-after-free flaw in the Linux kernel’s Bluetooth subsystem. The vulnerability, rated...
Stale network interface in Linux USB RNDIS gadget triggers kernel crash via configfs cycles
A newly published Linux kernel vulnerability, CVE-2026-31722, exposes systems using the USB gadget RNDIS function to denial-of-service attacks. The NVD disclosed the medium-severity flaw on May 1,...
CVE-2026-31725: Linux Kernel USB Gadget Flaw Exposes Local DoS Risk – What Windows Users Need to Know
A newly disclosed Linux kernel vulnerability, CVE-2026-31725, could allow a local attacker to crash systems using USB Ethernet gadgets—and if you’re a Windows user connecting to such devices, you...
CVE-2026-31777: Linux ALSA ctxfi Driver Bug Impacts Enterprise Security Feeds
A medium-severity vulnerability in the Linux kernel's Advanced Linux Sound Architecture (ALSA) ctxfi driver was published on May 1, 2026, as CVE-2026-31777. The bug, which stems from a missing error...
Linux XFS Vulnerability CVE-2026-43053 Puts WSL and Azure VMs at Risk
A critical vulnerability in the Linux Kernel’s XFS filesystem, tracked as CVE-2026-43053, has been published by MITRE and subsequently analyzed by NIST. The flaw, disclosed on May 1, 2026, with...
CVE-2026-43308: Linux Kernel Btrfs Bug Fix Replaces Kernel Panic with Graceful Error Handling
The National Vulnerability Database (NVD) published CVE-2026-43308 on May 8, 2026, marking a significant Linux kernel security update that converts a system-crashing BUG() macro into ordinary error...
Linux USB Gadget NCM Bug Crashes Network on Windows Hosts
The Linux kernel's USB gadget subsystem just received a critical patch for a bug that could silently crash network connections when a gadget running an affected kernel version is plugged into a...
CVE-2026-43398: AMDGPU Kernel Driver Bug Exposes Linux Systems to OOM Denial of Service
A newly published Linux kernel vulnerability tracked as CVE-2026-43398 allows local attackers to trigger out-of-memory (OOM) conditions by exploiting a flaw in the AMDGPU driver’s user queue wait...
CVE-2026-43400: AMDGPU Driver Flaw Exposes Linux Systems to OOM Denial of Service
A newly disclosed vulnerability in AMD's open-source amdgpu driver for Linux can be exploited by local attackers to trigger out-of-memory (OOM) conditions, causing system-wide denial-of-service....
Batched processing patch stops Linux kernel hangs from KASAN vmalloc RCU stalls
A serious availability vulnerability in the Linux kernel surfaced publicly on May 8, 2026, when the National Vulnerability Database published CVE-2026-43292. The advisory describes a flaw in the...
AMD Linux Display Driver Flaw (CVE-2026-43305) Patched After Causing System Hangs
A newly disclosed vulnerability in the Linux kernel’s AMD display driver can freeze or hang systems, prompting a swift patch release and an unusual spotlight in Microsoft’s May 2026 Security...
CVE-2026-43344: Intel Uncore Flaw Hits WSL2, Hyper-V, Azure VMs
On May 8, 2026, a narrow but dangerous vulnerability was patched in the Linux kernel that affects the Intel uncore performance monitoring unit (PMU). The flaw, tracked as CVE-2026-43344, could allow...