CVE-2025-21323
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Jan 14, 2025
CWE ID 532
Summary
CVE-2025-21323 is a recently disclosed vulnerability affecting the Windows Kernel. This issue allows an attacker to obtain sensitive memory information through a carefully crafted sequence of system calls. Successful exploitation could lead to significant information disclosure, potentially enabling further attacks or system compromise. Microsoft has released a security update to mitigate this vulnerability, and it is recommended that all Windows systems be promptly patched to protect against potential exploitation.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows 10
- Microsoft Windows 11
- Windows Server 2022
Affected Vendors
- Microsoft