CVE-2026-2408: Use-after-free in Cloud Workloads
Published Feb 19, 2026
·Updated
Tanium addressed a use-after-free vulnerability in the Cloud Workloads Enforce client extension.
Affected Software
2 affected components
Tanium Cloud Workloads
Tanium Cloud Workloads<1.0.222
Event History
Feb 19, 2026
CVE Published
via MITRE·11:09 PM
Data Sourced
via MITRE·11:09 PM
DescriptionSeverityWeakness
Feb 20, 2026
Data Sourced
via NVD·12:16 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-2408?
CVE-2026-2408 is considered a high-severity vulnerability due to the potential for exploitation leading to arbitrary code execution.
2
What are the potential impacts of CVE-2026-2408?
The potential impacts of CVE-2026-2408 include application crashes and unauthorized access to system resources.
3
How do I fix CVE-2026-2408?
To fix CVE-2026-2408, update the Tanium Cloud Workloads product to the latest version as outlined by Tanium security advisories.
4
Which software is affected by CVE-2026-2408?
CVE-2026-2408 specifically affects the Tanium Cloud Workloads Enforce client extension.
5
Is there a workaround for CVE-2026-2408?
Currently, no official workarounds for CVE-2026-2408 have been provided by Tanium.