CVE-2025-21198: Microsoft High Performance Compute (HPC) Pack Remote Code Execution Vulnerability
Published Feb 11, 2025
·Updated
Microsoft High Performance Compute (HPC) Pack Remote Code Execution Vulnerability
Affected Software
4 affected componentsFixes available
Microsoft HPC Pack 2019
Microsoft HPC Pack 2016
Microsoft HPC Pack 2016<2016.3
Microsoft HPC Pack 2019<6.3.8328.0
Remediation
Event History
Feb 11, 2025
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·05:58 PM
Data Sourced
via MITRE·05:58 PM
DescriptionSeverity
News Published
via Dark Reading·09:55 PM
News Published
via Dark Reading·10:24 PM
Feb 12, 2025
News Published
via The Register·02:58 AM
Feb 16, 2025
News Published
via The Register·03:01 AM
Known Exploited
03:01 AM
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2025-21198?
CVE-2025-21198 is classified as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2025-21198?
To fix CVE-2025-21198, apply the latest security updates provided by Microsoft for HPC Pack 2016 and HPC Pack 2019.
3
What products are affected by CVE-2025-21198?
CVE-2025-21198 affects Microsoft HPC Pack 2016 and Microsoft HPC Pack 2019.
4
What kind of attacks can CVE-2025-21198 enable?
CVE-2025-21198 can enable attackers to execute arbitrary code on the affected systems remotely.
5
When was CVE-2025-21198 disclosed?
CVE-2025-21198 was disclosed in February 2025 as part of Microsoft's security updates.