First published: Tue May 13 2025(Updated: )
<p>Uncontrolled resource consumption in Windows Deployment Services allows an unauthorized attacker to deny service locally.</p>
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows Server 2022 23H2 | ||
Windows 11 | =24H2 | |
Windows 10 | =21H2 | |
Windows 10 | =22H2 | |
Microsoft Windows Server 2012 R2 | ||
Windows 11 | =24H2 | |
Windows 11 | =23H2 | |
Microsoft Windows Server 2016 | ||
Windows 10 | ||
Microsoft Windows Server | ||
Windows 10 | =1607 | |
Microsoft Windows Server | ||
Microsoft Windows Server | ||
Windows 11 | =23H2 | |
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2019 | ||
Windows 10 | ||
Microsoft Windows Server 2022 | ||
Microsoft Windows Server | ||
Microsoft Windows Server 2025 | ||
Windows 10 | =22H2 | |
Windows 11 | =22H2 | |
Microsoft Windows Server | ||
Windows 10 | =21H2 | |
Windows 10 | =21H2 | |
Microsoft Windows Server | ||
Windows 11 | =22H2 | |
Microsoft Windows Server 2022 | ||
Windows 10 | =1809 | |
Windows 10 | =1809 | |
Microsoft Windows Server 2008 R2 | ||
Microsoft Windows Server 2016 | ||
Windows 10 | =22H2 | |
Microsoft Windows Server 2025 | ||
Microsoft Windows Server 2012 R2 | ||
Microsoft Windows Server 2008 R2 | ||
Windows 10 | =1607 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-29957 has a severity rating that allows an unauthorized attacker to deny service locally through uncontrolled resource consumption in Windows Deployment Services.
To fix CVE-2025-29957, apply the security patches provided by Microsoft for the affected products.
CVE-2025-29957 affects various Microsoft products, including Windows Server 2022, Windows Server 2019, Windows 10, and Windows 11.
The consequences of CVE-2025-29957 include potential denial of service, affecting availability and operation for users of the impacted systems.
Currently, the recommended approach is to apply official patches from Microsoft, as no specific workarounds are detailed for CVE-2025-29957.