Sep 2026: Skype for Business and Lync Denial of Service Vulnerability
CVE-2026-66307 Published on September 8, 2026

Skype for Business and Lync Denial of Service Vulnerability
Integer underflow (wrap or wraparound) in Skype for Business allows an unauthorized attacker to deny service over a network.

Vendor Advisory NVD

Weakness Type

What is an Integer underflow Vulnerability?

The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result. This can happen in signed and unsigned cases.

CVE-2026-66307 has been classified to as an Integer underflow vulnerability or weakness.


Products Associated with CVE-2026-66307

Want to know whenever a new CVE is published for Microsoft products? stack.watch will email you.

 
 
 

Affected Versions

Microsoft Skype for Business Server 2015 CU13: Microsoft Skype for Business Server 2019 CU8: Microsoft Skype for Business Server Subscription Edition CU1: