CVE Vulnerabilities

CVE-2026-20962

Use of Uninitialized Resource

Published: Jan 13, 2026 | Modified: Jan 14, 2026
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Use of uninitialized resource in Dynamic Root of Trust for Measurement (DRTM) allows an authorized attacker to disclose information locally.

Weakness

The product uses or accesses a resource that has not been initialized.

Affected Software

NameVendorStart VersionEnd Version
Windows_10_1809Microsoft*10.0.17763.8276 (excluding)
Windows_10_21h2Microsoft*10.0.19044.6809 (excluding)
Windows_10_22h2Microsoft*10.0.19045.6809 (excluding)
Windows_11_23h2Microsoft*10.0.22631.6491 (excluding)
Windows_11_24h2Microsoft*10.0.26100.7623 (excluding)
Windows_11_25h2Microsoft*10.0.26200.7623 (excluding)
Windows_server_2019Microsoft*10.0.17763.8276 (excluding)
Windows_server_2022Microsoft*10.0.20348.4648 (excluding)
Windows_server_2022_23h2Microsoft*10.0.25398.2092 (excluding)
Windows_server_2025Microsoft*10.0.26100.32230 (excluding)

Potential Mitigations

References