CVE-2025-21334: Microsoft Windows Hyper-V NT Kernel Integration VSP Use-After-Free Vulnerability
Microsoft Windows Hyper-V NT Kernel Integration VSP contains a use-after-free vulnerability that allows a local attacker to gain SYSTEM privileges.
Other sources
Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26100.2894Patch KB5050009 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.25398.1369Patch KB5049984 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22631.4751Patch KB5050021 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.5371Patch KB5049981 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22621.4751Patch KB5050021 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.5371Patch KB5049981
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2025-21334?
CVE-2025-21334 has been classified as a critical vulnerability due to its potential for local attackers to gain SYSTEM privileges.
How do I fix CVE-2025-21334?
To fix CVE-2025-21334, it is recommended to apply the latest security updates provided by Microsoft for affected versions of Windows.
Which versions of Windows are affected by CVE-2025-21334?
CVE-2025-21334 affects various versions of Microsoft Windows including Windows 10 and Windows 11 across specific build numbers.
What type of vulnerability is CVE-2025-21334?
CVE-2025-21334 is a use-after-free vulnerability that can lead to elevation of privilege.
Can remote attackers exploit CVE-2025-21334?
No, CVE-2025-21334 requires local access, making it exploitable only by local attackers.