PT-2025-42815 · Microsoft · Windows 10 Ltsc 2021+1
Published
2025-10-20
·
Updated
2025-10-21
·
CVE-2025-61303
CVSS v3.1
10
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Windows 10 build 2004 (2025-08-14)
Windows 10 LTSC 2021 (2025-08-14)
Description
The Windows behavioral analysis engine contains a flaw that can allow submitted malware samples to avoid detection and cause a denial-of-analysis. The issue occurs when a sample creates a large number of child processes repeatedly, leading to high log volume and system resource exhaustion. This can prevent the recording or reporting of malicious activities, such as PowerShell execution and reverse shell activity, potentially misleading analysts and affecting the integrity and availability of sandboxed analysis results.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows 10
Windows 10 Ltsc 2021