HIGH

CVE-2025-21335

Microsoft Windows 10 21h2 2025-01-14 CVSS v3.1
CVSS
7.8
KEV

Description

Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability

Summary dbcve.org

Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability affecting the virtual machine host kernel component. The vulnerability allows an authenticated attacker to elevate privileges within the guest virtual machine context.

Mitigation

Apply Microsoft security updates for affected Windows Hyper-V implementations when released. Ensure hypervisor and guest VM patches are applied according to Microsoft's deployment timeline.

Patch Commit

Weakness (CWE)

CWE-416 Use After Free

EPSS Score

1.39%
Probability of exploitation in next 30 days
70.7th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE