Overview
What is CVE-2026-40380?
Heap-based buffer overflow in Volume Manager Extension Driver allows an authorized attacker to execute code with a physical attack.
Vulnerability intelligence
CVE-2026-40380 and is rated Medium severity with a CVSS score of 6.2. It is not in the current CISA KEV record we collected. That does not prove exploitation has not occurred.
Heap-based buffer overflow in Volume Manager Extension Driver allows an authorized attacker to execute code with a physical attack.