Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
4.4

Windows Display Driver: Unauthorized Access to System Data

CVE-2026-20424
Summary

A Windows display driver vulnerability allows a malicious actor with System privileges to access sensitive system information. This could potentially lead to unauthorized data exposure. To fix this issue, apply the corresponding patch from Microsoft.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
google android 15.0
google android 16.0
Original title
In display, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. Use...
Original description
In display, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10320471; Issue ID: MSV-5540.
nvd CVSS3.1 4.4
Vulnerability type
CWE-125 Out-of-bounds Read
Published: 2 Mar 2026 · Updated: 13 Mar 2026 · First seen: 6 Mar 2026