CVE-2025-24084: Windows Subsystem for Linux (WSL2) Kernel Remote Code Execution Vulnerability
Untrusted pointer dereference in Windows Subsystem for Linux allows an unauthorized attacker to execute code locally.
Other sources
Windows Subsystem for Linux (WSL2) Kernel Remote Code Execution Vulnerability
— Microsoft
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2025-24084?
CVE-2025-24084 has been rated with a high severity due to potential unauthorized code execution.
How do I fix CVE-2025-24084?
To fix CVE-2025-24084, you should apply the relevant patches provided by Microsoft for your affected software version.
Which software is affected by CVE-2025-24084?
CVE-2025-24084 affects various Microsoft products, including Windows Server 2025 and Windows 11 versions 22H2, 23H2, and 24H2.
Is CVE-2025-24084 a local or remote attack?
CVE-2025-24084 enables local code execution, requiring an authorized attacker to exploit the vulnerability.
What are the potential impacts of CVE-2025-24084?
The potential impacts of CVE-2025-24084 include unauthorized execution of code, which may lead to data breaches or system compromise.