CVE-2026-20829

O

ut-of-bounds read in Windows TPM allows an authorized attacker to disclose information locally.

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*

History

15 Jan 2026, 13:07

Type Values Removed Values Added
CPE cpe:2.3:o:microsoft:windows_11_25h2:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:x64:*
cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:x64:*
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20829 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20829 - Vendor Advisory
First Time Microsoft windows 10 21h2
Microsoft windows 10 22h2
Microsoft windows 10 1809
Microsoft windows 11 25h2
Microsoft windows 11 23h2
Microsoft windows Server 2022 23h2
Microsoft windows Server 2019
Microsoft windows 11 24h2
Microsoft windows Server 2022
Microsoft
Microsoft windows Server 2025

13 Jan 2026, 18:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-01-13 18:16

Updated : 2026-01-15 13:07


NVD link : CVE-2026-20829

Mitre link : CVE-2026-20829

CVE.ORG link : CVE-2026-20829


JSON object : View

CWE
CWE-125

Out-of-bounds Read