CVE-2025-21323

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Jan 14, 2025
CWE ID 532

Summary

CVE-2025-21323 is a recently disclosed vulnerability affecting the Windows Kernel. This issue allows an attacker to obtain sensitive memory information through a carefully crafted sequence of system calls. Successful exploitation could lead to significant information disclosure, potentially enabling further attacks or system compromise. Microsoft has released a security update to mitigate this vulnerability, and it is recommended that all Windows systems be promptly patched to protect against potential exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows 10
  • Microsoft Windows 11
  • Windows Server 2022

Affected Vendors

  • Microsoft