Stack-Based Buffer Overflow in Active Directory Federation Services by Microsoft
CVE-2026-50368
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 14 July 2026
What is CVE-2026-50368?
A stack-based buffer overflow vulnerability exists in Active Directory Federation Services, which allows an unauthorized attacker to exploit the vulnerability to cause a denial of service. This vulnerability can enable an attacker to disrupt the normal functionality of the service, affecting network operations and accessibility. Organizations using affected versions should apply relevant security updates to mitigate potential attacks.
Affected Version(s)
Microsoft .NET Framework 3.5 AND 4.7.2 Windows 10 Version 1607 for 32-bit Systems 4.7.0 < 2.0.50727.9069 & 3.0.30729.9067 & 4.7.4143.0
Microsoft .NET Framework 3.5 AND 4.8 Windows 10 Version 1809 for 32-bit Systems 4.8.0 < 2.0.50727.9069 & 3.0.30729.9067 & 4.8.4803.0
Microsoft .NET Framework 3.5 AND 4.8.1 Windows 10 Version 21H2 for 32-bit Systems 4.8.1 < 2.0.50727.9182 & 3.0.30729.9168 & 4.8.9339.0