CVE-2025-21379: DHCP Client Service Remote Code Execution Vulnerability
Published Feb 11, 2025
·Updated
DHCP Client Service Remote Code Execution Vulnerability
Affected Software
7 affected componentsFixes available
Microsoft Windows Server 2025
Microsoft Windows Server 2025
Microsoft Windows 11=24H2
Microsoft Windows 11=24H2
Microsoft Windows 11 24h2<10.0.26100.3194
Microsoft Windows 11 24h2<10.0.26100.3194
Microsoft Windows Server 2025<10.0.26100.3194
Remediation
Event History
Feb 11, 2025
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·05:58 PM
Data Sourced
via MITRE·05:58 PM
DescriptionSeverity
News Published
via Dark Reading·09:55 PM
News Published
via Dark Reading·10:24 PM
Feb 12, 2025
News Published
via The Register·02:58 AM
Feb 16, 2025
News Published
via The Register·03:01 AM
Known Exploited
03:01 AM
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2025-21379?
CVE-2025-21379 is rated with a high severity level due to its potential for remote code execution.
2
How do I fix CVE-2025-21379?
To fix CVE-2025-21379, apply the security patch provided by Microsoft for the affected software.
3
Which versions of Windows are affected by CVE-2025-21379?
CVE-2025-21379 affects Windows Server 2025 and Windows 11 version 24H2 on both arm64 and x86_64 architectures.
4
Can CVE-2025-21379 be exploited remotely?
Yes, CVE-2025-21379 can be exploited remotely, allowing attackers to execute arbitrary code on the vulnerable systems.
5
Is there a known exploit for CVE-2025-21379?
As of now, there are no publicly known exploits for CVE-2025-21379, but it is essential to patch it to prevent potential attacks.