CVE-2025-20786: Use After Free
In display, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10149882; Issue ID: MSV-4673.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-20786?
CVE-2025-20786 has a high severity due to the potential for memory corruption and local privilege escalation.
How do I fix CVE-2025-20786?
To fix CVE-2025-20786, apply the patch identified as ALPS10149882 immediately.
Who is affected by CVE-2025-20786?
CVE-2025-20786 affects users of Microsoft Windows with specific versions that allow memory corruption.
Is user interaction required to exploit CVE-2025-20786?
No, user interaction is not required to exploit CVE-2025-20786 as the attack can be executed by a malicious actor who already has system privileges.
What kind of attack does CVE-2025-20786 allow?
CVE-2025-20786 allows for local escalation of privilege due to a use after free vulnerability.