EXECUTIVE SUMMARY:
Multiple vulnerabilities affect Adobe Photoshop and Microsoft Windows. The flaws include privilege escalation, information disclosure, remote code execution, use-after-free, out-of-bounds memory access and type confusion. Exploitation may allow an attacker to elevate privileges through crafted files or API calls, expose sensitive information or cause a denial-of-service condition. The vulnerabilities affect different application components and Windows drivers, with exploitation methods varying by flaw. The respective vendors have released patches, and affected products should be updated to the appropriate fixed versions. Organizations can also use the latest Snort rule sets to help detect exploitation attempts.[/subscribe_to_unlock_form]
EXECUTIVE SUMMARY:
Multiple vulnerabilities affect Adobe Photoshop and Microsoft Windows. The flaws include privilege escalation, information disclosure, remote code execution, use-after-free, out-of-bounds memory access and type confusion. Exploitation may allow an attacker to elevate privileges through crafted files or API calls, expose sensitive information or cause a denial-of-service condition. The vulnerabilities affect different application components and Windows drivers, with exploitation methods varying by flaw. The respective vendors have released patches, and affected products should be updated to the appropriate fixed versions. Organizations can also use the latest Snort rule sets to help detect exploitation attempts.[emaillocker id="1283"]
CVE-2026-50475 (CVSS 5.5 — Medium): An out-of-bounds pointer offset vulnerability exists in the Microsoft Windows NETIO.sys driver that can cause disclosure of sensitive information when triggered by a specially crafted I/O request packet (IRP).
CVE-2026-58613 (CVSS 7.8 — High): A use-after-free vulnerability exists in Windows Cloud Files Mini Filter Driver, which can be triggered by a specially crafted sequence of Cloud Filter API calls executed with a dedicated application, leading to privilege escalation.
CVE-2026-80093 (CVSS 7.0 — High): A type confusion vulnerability exists in Windows Cloud Files Mini Filter Driver that can be triggered by a specially crafted sequence of Cloud Filter API calls and lead to type confusion, allowing an attacker to execute a dedicated application.
CVE-2026-49177 CVSS 5.5 — Medium): An out-of-bounds read vulnerability exists in the Microsoft Windows tcpip.sys driver that can cause an arbitrary out-of-bounds read when triggered by a specially crafted I/O request packet (IRP), potentially leading to information disclosure or a denial-of-service condition.
RECOMMENDATIONS:
REFERENCES:
The following reports contain further technical details:
https://blog.talosintelligence.com/microsoft-adobe-apple-and-foxit-vulnerabilities/