CVE-2025-24990: Microsoft Windows Untrusted Pointer Dereference Vulnerability
Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating systems. This is an announcement of the upcoming removal of ltmdm64.sys driver. The driver has been removed in the October cumulative update. Fax modem hardware dependent on this specific driver will no longer work on Windows. Microsoft recommends removing any existing dependencies on this hardware.
Other sources
Microsoft Windows Agere Modem Driver contains an untrusted pointer dereference vulnerability that allows for privilege escalation. An attacker who successfully exploited this vulnerability could gain administrator privileges.
— CISA
Windows Agere Modem Driver Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.2.9200.25722Patch KB5066875 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.22824Patch KB5066873 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.23571Patch KB5066877 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.7601.27974Patch KB5066876 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.8519Patch KB5066836 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.21161Patch KB5066837 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.25398.1913Patch KB5066780 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26100.6899Patch KB5066835 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.6456Patch KB5066791 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22631.6060Patch KB5066793 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.6456Patch KB5066791 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22621.6060Patch KB5066793 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.4294Patch KB5066782 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26200.6899Patch KB5066835 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.7919Patch KB5066586 - Configuration
Remove any existing dependencies on the affected fax modem hardware that rely on the Microsoft Windows Agere Modem driver (ltmdm64.sys), as Microsoft recommends removing existing dependencies on this hardware.
Windows Fax modem hardware / dependencies on Agere Modem driver Dependency on the Microsoft Windows Agere Modem driver (ltmdm64.sys) = remove existing dependencies
Event History
Frequently Asked Questions
What is the severity of CVE-2025-24990?
CVE-2025-24990 has been classified as a critical vulnerability due to the removal of the ltmdm64.sys driver affecting numerous Windows operating systems.
How do I fix CVE-2025-24990?
To mitigate CVE-2025-24990, install the latest cumulative updates for your Windows operating system as they address the vulnerability by removing the affected driver.
Which versions of Windows are affected by CVE-2025-24990?
CVE-2025-24990 affects various versions of Windows, including Windows Server 2008, 2012, 2016, 2019, and newer Windows 10 and 11 releases.
Is there a workaround for CVE-2025-24990 until a patch is applied?
Currently, the recommended approach for CVE-2025-24990 is to promptly update the affected systems, as there are no viable workarounds.
What is the impact of CVE-2025-24990 on my system?
The impact of CVE-2025-24990 can potentially lead to system instability and loss of functionality related to fax modems due to the removal of the ltmdm64.sys driver.