HIGH
CVE-2025-32709
CVSS
7.8
KEV
Description
Null pointer dereference in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.
Summary dbcve.org
A null pointer dereference vulnerability in the Windows Ancillary Function Driver for WinSock (AFD.sys) can be exploited by a local authenticated attacker to escalate privileges to SYSTEM level by triggering the dereference of an uninitialized or controlled pointer.
Mitigation
Apply the Microsoft security update addressing CVE-2025-32709 to all affected Windows systems; prioritize endpoints with direct network exposure and ensure standard patch deployment processes are followed.
Weakness (CWE)
CWE-416
Use After Free
EPSS Score
2.14%
Probability of exploitation in next 30 days
81.2th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.