CVE-2025-62217
7.0
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.0 / Impact: 5.9
Source: secure@microsoft.com (Secondary)
Description
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Affected (19)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 10.0.14393.8594 | |
| Before 10.0.17763.8027 | |
| Before 10.0.19044.6575 | |
| Before 10.0.19045.6575 | |
| Before 10.0.22631.6199 | |
| Before 10.0.26100.7092 | |
| Before 10.0.26200.7092 | |
| All versions | |
| All versions | |
| Before 10.0.14393.8594 | |
| Before 10.0.17763.8027 | |
| Before 10.0.20348.4346 | |
| Before 10.0.25398.1965 | |
| Before 10.0.26100.7092 |
References (1)
Source: secure@microsoft.com
Vendor Advisory
Timeline
No history available yet.