Description
Out-of-bounds read in Push Message Routing Service allows an authorized attacker to disclose information locally.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6Attack Vector: Local
Complexity: Low
Privileges: Low
User Interaction: None
Scope: Unchanged
Confidentiality: High
Integrity: None
Availability: None
Affected Packages17 packages
🔴Vulnerability Details
2GHSAGHSA-33v9-7cpf-3wr4: Out-of-bounds read in Push Message Routing Service allows an authorized attacker to disclose information locally↗2026-03-10 ▶ CVEListPush message Routing Service Elevation of Privilege Vulnerability↗2026-03-10 ▶ 📋Vendor Advisories
1MicrosoftPush message Routing Service Elevation of Privilege Vulnerability↗2026-03-10 ▶ 🕵️Threat Intelligence
1WizCVE-2026-24282 Impact, Exploitability, and Mitigation Steps | Wiz↗ ▶