PT-2025-6313 · Microsoft · Windows

Devin Jensen

+1

·

Published

2025-02-11

·

Updated

2025-12-17

·

CVE-2025-21367

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Windows (affected versions not specified)
Description: The issue is related to an elevation-of-privilege vulnerability in the Windows Win32 Kernel Subsystem. It is associated with the possibility of using memory after it has been freed. Exploitation of this issue may allow an attacker to elevate their privileges.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Use After Free

Weakness Enumeration

Related Identifiers

BDU:2025-01549
CVE-2025-21367

Affected Products

Windows