CVE-2026-19380
Received Received - Intake

Improper Reference Count Update in Mullvad WireGuard Driver

Vulnerability report for CVE-2026-19380, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-10

Last updated on: 2026-08-10

Assigner: VulDB

Description

A vulnerability was identified in Mullvad wireguard.sys 0.10.1. The affected element is the function AdapterState of the component IOCTL Handler. Such manipulation leads to improper update of reference count. Local access is required to approach this attack. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-10
Last Modified
2026-08-10
Generated
2026-08-10
AI Q&A
2026-08-10
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
mullvad wireguard 0.10.1

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-664 The product does not maintain or incorrectly maintains control over a resource throughout its lifetime of creation, use, and release.
CWE-911 The product uses a reference count to manage a resource, but it does not update or incorrectly updates the reference count.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability exists in Mullvad wireguard.sys 0.10.1 due to improper update of reference count in the AdapterState function of the IOCTL Handler component. It requires local access to exploit and an exploit is publicly available.

Impact Analysis

The vulnerability could allow local attackers to cause a denial of service or other unintended behavior by manipulating the reference count. Since it requires local access, the risk is limited to systems where an attacker has physical or local system access.

Mitigation Strategies

Update the Mullvad WireGuard driver to the latest version to address the improper reference count update issue. Since local access is required for exploitation, restrict user permissions to prevent unauthorized access to the IOCTL handler.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-19380. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart