Microsoft Security Advisory CVE-2026-71328
Microsoft is releasing this security advisory to provide information a vulnerability in Microsoft.DiaSymReader.Native. This advisory also provides guidance on what developers can do to update their applications to remove this vulnerability.
Microsoft.DiaSymReader.Native can perform an out of bounds write while processing MSFZ PDB files.
github.com /advisories/GHSA-63gh-g2x5-x69v
github.com /dotnet/runtime/security/advisories/GHSA-63gh-g2x5-x69v
msrc.microsoft.com /update-guide/vulnerability/CVE-2026-71328
nvd.nist.gov /vuln/detail/CVE-2026-71328
Code Behaviors & Features
Detect and mitigate CVE-2026-71328 with GitLab Dependency Scanning
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
