PT-2025-24836 · Microsoft · Local Security Authority Subsystem Service+1
Or Yair
+1
·
Published
2025-06-10
·
Updated
2026-03-09
·
CVE-2025-32724
CVSS v2.0
7.8
High
| AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Windows versions (affected versions not specified)
Description
An uncontrolled resource consumption issue in the Windows Local Security Authority Subsystem Service (LSASS) can allow an unauthorized attacker to cause a denial of service over a network. This issue enables attackers to disrupt system functionality. Reports indicate that the vulnerability, identified as CVE-2025-32724, is being exploited by 'win-dDoS' to compromise domain controllers and use them as DDoS botnet participants, potentially affecting up to 10,000 domain controllers. The exploitation leverages LDAP referrals and does not require credentials.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows
Local Security Authority Subsystem Service