CVE-2026-70579: Windows Mobile Broadband Information Disclosure Vulnerability
Out-of-bounds read in Windows Mobile Broadband allows an unauthorized attacker to disclose information over a network.
Other sources
Windows Mobile Broadband Information Disclosure Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26200.9445Patch KB5124008 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.28000.2954Patch KB5124012 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26100.9445Patch KB5124008 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22631.7582Patch KB5122880 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.7725Patch KB5122878 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.7725Patch KB5122878
Event History
Frequently Asked Questions
Who can exploit this issue?
An unauthorized attacker can exploit it remotely over a network. The provided vector indicates no privileges or user interaction are required.
What is the impact of successful exploitation?
Successful exploitation can disclose information from affected Windows Mobile Broadband components. The supplied metrics indicate high confidentiality impact, with no stated integrity or availability impact.
Which systems are identified as affected?
The affected software list identifies Microsoft Windows 10 and Microsoft Windows 11.