Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.6

CVE-2026-25289: Windows Device Discovery Vulnerability in Windows

CVE-2026-25289 CVE-2026-25289
Summary

A security issue exists in Windows' device discovery feature. If an attacker sends a malicious device discovery message, it could potentially crash the system or execute unauthorized code. To protect against this vulnerability, ensure your Windows systems are up-to-date with the latest security patches.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versions
qualcomm, inc. snapdragon AR8035
Original title
Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.
Original description
Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.
nvd CVSS3.1 9.6
Vulnerability type
CWE-121 Stack-based Buffer Overflow
Published: 4 Aug 2026 · Updated: 7 Aug 2026 · First seen: 4 Aug 2026