CVE-2025-21230
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Jan 14, 2025
CWE ID 400
CWE ID 20
Summary
CVE-2025-21230 is a Denial of Service (DoS) vulnerability affecting Microsoft Message Queuing (MSMQ). An attacker can exploit this issue by sending specially crafted MSMQ messages, resulting in excessive memory consumption and service crashes. This can lead to a Denial of Service condition, preventing legitimate users from accessing the MSMQ service. Microsoft has released a patch to address this vulnerability, and it is recommended that affected systems be updated as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows Server 2008
Affected Vendors
- Microsoft