PT-2025-28557 · Microsoft · Tdx.Sys+1

Angelboy

+1

·

Published

2025-07-08

·

Updated

2025-07-09

·

CVE-2025-49658

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Windows TDX.sys (affected versions not specified)
Description: The issue is related to an out-of-bounds read in Windows TDX.sys, which allows an authorized attacker to disclose information locally. This means that an attacker with certain privileges can potentially access sensitive data that they should not have access to.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Weakness Enumeration

Related Identifiers

BDU:2025-08448
CVE-2025-49658

Affected Products

Tdx.Sys
Windows