Microsoft disclosed CVE-2026-34339, an Important denial-of-service flaw in Windows Lightweight Directory Access Protocol (LDAP) caused by a NULL pointer dereference. The company said an authorized local attacker with low privileges could trigger the bug without user interaction, causing a loss of availability but not affecting confidentiality or integrity. Microsoft assigned the issue a CVSS 3.1 score of 5.5, said exploitation is considered less likely, and reported no public disclosure or active exploitation at publication; a vendor fix is available.
Microsoft also published CVE-2026-29169, a denial-of-service vulnerability affecting Apache HTTP Server mod_dav_lock through an indirect lock crash tied to CWE-476 NULL Pointer Dereference. That flaw carries a CVSS 3.1 score of 7.5 and is rated remotely exploitable over the network with no privileges or user interaction required, again impacting availability rather than confidentiality or integrity. The disclosures follow earlier Microsoft advisories for Windows denial-of-service issues including CVE-2024-49113 and CVE-2024-49121 in LDAP and CVE-2025-59259 in the Windows Local Session Manager.

See affected versions and whether adversaries are exploiting it.
2 events from the most recent confirmed update back to the earliest known activity.
Microsoft disclosed CVE-2026-34339, a Windows Lightweight Directory Access Protocol denial-of-service vulnerability caused by a null pointer dereference. The company rated it Important with a CVSS 3.1 score of 5.5, said exploitation was less likely with no public exploitation reported, and made an official fix available.
Microsoft's Security Update Guide published CVE-2026-29169, describing a remotely exploitable NULL pointer dereference in Apache HTTP Server's mod_dav_lock that can cause denial of service. The advisory assigned a CVSS 3.1 score of 7.5 and noted no privileges or user interaction are required.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
5 references tracked. Mallory keeps watching after this page renders.
msrc.microsoft.com
Open sourcemsrc.microsoft.com
Open sourcemsrc.microsoft.com
Open sourcemsrc.microsoft.com
Open sourcemsrc.microsoft.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.