PT-2025-28627 · Microsoft · Graphics+1

Marcin Wiazowski

·

Published

2025-07-08

·

Updated

2025-07-17

·

CVE-2025-49742

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Windows (affected versions not specified)
Description An integer overflow or wraparound issue exists in the Microsoft Graphics Component. This allows an authorized attacker to execute code locally. The vulnerability may also allow remote attackers to execute arbitrary code and affect the system. The issue is related to a buffer overflow in memory within the Graphics component of Windows operating systems.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

RCE

Integer Overflow

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-08373
CVE-2025-49742
ZDI-25-578

Affected Products

Graphics
Windows