THREAT OPS › Threat News › [NVD] CVE-2026-20472 (MEDIUM 4.4) — In TFA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10991467; Issue ID: MSV-7764.
[NVD] CVE-2026-20472 (MEDIUM 4.4) — In TFA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10991467; Issue ID: MSV-7764.
CVE-2026-20472 CVSS: 4.4 MEDIUM Published: 2026-08-03T03:16:42.177
In TFA, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10991467; Issue ID: MSV-7764.
Indicators of compromise
- CVE-2026-20472cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-20472