CVE Tools

CVE-2026-59132

Windows TCP/IP Denial of Service Vulnerability

Published: Aug 11, 2026Updated: Aug 16, 2026 Sources: CVE List NVDCWE-476

Description

Null pointer dereference in Windows TCP/IP allows an unauthorized attacker to deny service over a network.

In plain language

AI Act now

This Windows TCP/IP flaw can let an attacker knock your computer offline from the network; small businesses using the affected Windows versions should fix it now.

Executive summary

CVE-2026-59132 is a Windows TCP/IP null pointer dereference that can be triggered via network traffic without authentication to cause a denial of service (service crash) on affected Windows 10/11 and Windows Server releases; Microsoft has released fixes for multiple versions.

If affected, business impact
Network service outageBusiness disruption from downtimeRemote work and access disruptionPotential recovery time costs

What to do now

  1. Check whether your systems are on Windows 10, Windows 11, or one of these Windows Server versions: 2012, 2012 R2, 2016, 2019, 2022, or 2025.
  2. Verify whether each affected machine has been updated past the fixed build for your exact release (list below).
  3. Install Microsoft’s patch for CVE-2026-59132 from the MSRC update guide, ensuring the machine reaches at least one of the fixed versions that matches your OS branch:
    • Windows 10: 10.0.14393.9418 OR 10.0.17763.9121 OR 10.0.19044.7663 OR 10.0.19045.7663
    • Windows 11: 10.0.22631.7517 OR 10.0.26100.9168 OR 10.0.26200.9168 OR 10.0.28000.2704
    • Windows Server 2012: 6.2.9200.26280
    • Windows Server 2012 R2: 6.3.9600.23338
    • Windows Server 2016: 10.0.14393.9418
    • Windows Server 2019: 10.0.17763.9121
  4. Reboot after patching (if your IT process requires it) and confirm Windows updates remain installed successfully on each device.
Patch / advisory Usually a quick update

CVSS Vector Breakdown

AV:NAC:LPR:NUI:NS:UC:NI:NA:H
Exploitability
AV:NAttack Vector
Network
AC:LAttack Complexity
Low
PR:NPrivileges Required
None
UI:NUser Interaction
None
Scope
S:UScope
Unchanged
Impact
C:NConfidentiality
None
I:NIntegrity
None
A:HAvailability
High

Weaknesses

Affected Products

and 25 more affected products View all →

Exploitability

Official Patch Available

Attack Graph

Products CVE Techniques Tactics

Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/ + scroll to zoom, or go fullscreen.

MITRE ATT&CK

2 techniques
Impact
Initial Access
View detailed technique mapping

References

4

Unlock Complete Vulnerability Intelligence

Get the full picture for CVE-2026-59132 and every CVE in our database. Create a free account — no credit card required.

Create Free Account
Plain-language analysis
Impact assessment and exploitation scenario in plain English
Attack graph visualization
Interactive attack path and kill chain mapping
Exploit details & PoC links
ExploitDB, Metasploit, GitHub PoCs with direct links
Nuclei scanner templates
Ready-to-use vulnerability scanner templates
Full remediation guide
Patch instructions, workarounds, and compliance impact
Interactive AI chat
Ask questions about this vulnerability in natural language
Related vulnerabilities
Semantically similar CVEs and attack patterns
REST API & MCP access
Integrate vulnerability data into your workflows