CVE-2025-21335

HIGH KEV

Microsoft Windows 10 21h2 < 10.0.19044.5371 - Use After Free

Title source: rule

Description

Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability

Scores

CVSS v3 7.8
EPSS 0.0872
EPSS Percentile 92.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CISA KEV 2025-01-14
VulnCheck KEV 2025-01-14
ENISA EUVD EUVD-2025-2400
CWE
CWE-416
Status published
Products (7)
microsoft/windows_10_21h2 < 10.0.19044.5371
microsoft/windows_10_22h2 < 10.0.19045.5371
microsoft/windows_11_22h2 < 10.0.22621.4751 (2 CPE variants)
microsoft/windows_11_23h2 < 10.0.22631.4751 (2 CPE variants)
microsoft/windows_11_24h2 < 10.0.26100.2894 (2 CPE variants)
microsoft/windows_server_2022_23h2 < 10.0.25398.1369
microsoft/windows_server_2025 < 10.0.26100.2894
Published Jan 14, 2025
KEV Added Jan 14, 2025
Tracked Since Feb 18, 2026