HIGH

CVE-2025-29824

Microsoft Windows 10 1507 2025-04-08 CVSS v3.1
CVSS
7.8
KEV

Description

Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.

Summary dbcve.org

Use-After-Free vulnerability in the Windows Common Log File System (CLFS) driver allows a locally authorized attacker to elevate privileges to higher permission levels by exploiting memory corruption in the kernel-mode driver.

Mitigation

Apply the Microsoft security update for CVE-2025-29824 via Windows Update or manual patch deployment to address the vulnerability in the CLFS driver.

Proof of Concept

Weakness (CWE)

CWE-416 Use After Free

EPSS Score

13.9%
Probability of exploitation in next 30 days
96.4th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE