Summary
Microsoft Defender's antimalware platform and malware protection engine are affected by a denial-of-service issue in the scanning path. A local, unprivileged attacker can feed crafted input into the engine so that inspection triggers a failure, causing Defender to hang, crash, or otherwise stop providing normal protection. CISA's KEV listing shows the CVE is being actively exploited.
Why Planned Fix?
4/6Exploitation Details
Crash or hang the Defender antimalware engine, causing loss of scanning and monitoring.
Denial of ServiceAffected Software
| Product | Affected Versions |
|---|---|
| Microsoft Defender Antimalware Platform | 4.18.26030.3011 through < 4.18.26040.7 |
| Microsoft Malware Protection Engine | < 1.1.26040.8 |
Microsoft Defender is Microsoft’s built-in antimalware and endpoint protection stack for Windows and Windows Server systems.
Affected ComponentAntimalware scanning engine / malware protection engine used by Microsoft Defender.
Antimalware scanning engine / malware protection engine used by Microsoft Defender.
Affected Endpoints(1)https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45498
Not available
Not available
Update Microsoft Defender antimalware platform to 4.18.26040.7 or later; Microsoft also lists Microsoft Malware Protection Engine 1.1.26040.8 or later as fixed.
Update Microsoft Defender antimalware platform to 4.18.26040.7 or later; Microsoft also lists Microsoft Malware Protection Engine 1.1.26040.8 or later as fixed.
No known threat actors
No detection rules available
NVD Data
Description Summary
CVSS Base Score
CVSS Vector (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
Affected Software (CPE) (1)
- •cpe:2.3:a:microsoft:defender_antimalware_platform:*:*:*:*:*:*:*:*
Sources
| Source | Article |
|---|---|
| nvd.nist.gov | CVE-2026-45498 Detail |
| msrc.microsoft.com | Microsoft Defender Denial of Service Vulnerability |
| www.cisa.gov | Known Exploited Vulnerabilities Catalog |
| www.cyber.gc.ca | Microsoft security advisory (AV26-489) |
| www.cert.ssi.gouv.fr | Multiples vulnérabilités dans les produits Microsoft |
| www.govcert.gov.hk | High Threat Security Alert (A26-05-33): Multiple Vulnerabilities in Microsoft Products |
| www.tenable.com | CVE-2026-45498 |
Priority History
Initial analysis