Stack-based Buffer Overflow Vulnerability in Azure Connected Machine Agent by Microsoft
CVE-2026-21224
7.8HIGH
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 13 January 2026
What is CVE-2026-21224?
A stack-based buffer overflow vulnerability exists in the Azure Connected Machine Agent, allowing authorized attackers to elevate privileges on the affected system. Exploiting this flaw could enable attackers to execute code with elevated permissions, potentially compromising the integrity and security of the affected environment.
Affected Version(s)
Azure Connected Machine Agent 1.0.0 < 1.60.03293.2680