PT-2025-42815 · Microsoft · Windows 10 Ltsc 2021+1

Published

2025-10-20

·

Updated

2025-10-21

·

CVE-2025-61303

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows 10 build 2004 (2025-08-14) Windows 10 LTSC 2021 (2025-08-14)
Description The Windows behavioral analysis engine contains a flaw that can allow submitted malware samples to avoid detection and cause a denial-of-analysis. The issue occurs when a sample creates a large number of child processes repeatedly, leading to high log volume and system resource exhaustion. This can prevent the recording or reporting of malicious activities, such as PowerShell execution and reverse shell activity, potentially misleading analysts and affecting the integrity and availability of sandboxed analysis results.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-05177
CVE-2025-61303

Affected Products

Windows 10
Windows 10 Ltsc 2021