HIGH

CVE-2025-32709

Microsoft Windows 10 1507 2025-05-13 CVSS v3.1
CVSS
7.8
KEV

Description

Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Summary dbcve.org

A null pointer dereference vulnerability in the Windows Ancillary Function Driver for WinSock (AFD.sys) can be exploited by a local authenticated attacker to escalate privileges to SYSTEM level by triggering the dereference of an uninitialized or controlled pointer.

Mitigation

Apply the Microsoft security update addressing CVE-2025-32709 to all affected Windows systems; prioritize endpoints with direct network exposure and ensure standard patch deployment processes are followed.

Weakness (CWE)

CWE-416 Use After Free

EPSS Score

2.14%
Probability of exploitation in next 30 days
81.2th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE