CISA KEV 警告 26/08/18:Microsoft Internet Key Exchange の脆弱性 CVE-2026-33824 を登録

CISA Warns Microsoft Internet Key Exchange RCE Flaw Is Actively Exploited

2026/08/19 gbhackers — 米国の Cybersecurity and Infrastructure Security Agency (CISA) は、Microsoft Internet Key Exchange (IKE) Service Extensions に存在する深刻な脆弱性を Known Exploited Vulnerabilities (KEV) カタログへ追加した。実環境で悪用されている脆弱性 CVE-2026-33824 は Double Free の問題に分類されるものであり、Microsoft IKE Service Extensions のメモリ管理に影響を及ぼす。悪用に成功した未認証のリモート攻撃者は、脆弱なシステム上で任意のコードを実行し、そのホストを完全に侵害する可能性がある。

Continue reading “CISA KEV 警告 26/08/18:Microsoft Internet Key Exchange の脆弱性 CVE-2026-33824 を登録”