CVE-2025-32701: Microsoft Windows Common Log File System (CLFS) Driver Use-After-Free Vulnerability
Microsoft Windows Common Log File System (CLFS) Driver contains a use-after-free vulnerability that allows an authorized attacker to elevate privileges locally.
Other sources
Use after free in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
— Microsoft
Windows Common Log File System Driver Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.22577Patch KB5058403 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.7601.27729Patch KB5058454 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.23279Patch KB5058429 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.2.9200.25475Patch KB5058451 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.8066Patch KB5058383 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26100.4061Fixed in 10.0.26100.3981Patch KB5058497 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.21014Patch KB5058387 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.25398.1611Patch KB5058384 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22631.5335Patch KB5058405 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.5854Patch KB5058379 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22621.5335Patch KB5058405 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.5854Patch KB5058379 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.3692Fixed in 10.0.20348.3630Patch KB5058500 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.7314Patch KB5058392 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.3692Patch KB5058385 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.10240.21014Patch KB5058387 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.14393.8066Patch KB5058383 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.17763.7314Patch KB5058392 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.19044.5854Patch KB5058379 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.19045.5854Patch KB5058379 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.20348.3692Patch KB5058385 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.20348.3692Patch KB5058500 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.20348.3630Patch KB5058500 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.22621.5335Patch KB5058405 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.22631.5335Patch KB5058405 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.25398.1611Patch KB5058384 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.26100.4061Patch KB5058497 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 10.0.26100.3981Patch KB5058497 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 6.0.6003.23279Patch KB5058429 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 6.1.7601.27729Patch KB5058454 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 6.2.9200.25475Patch KB5058451 - Upgrade
Upgrade
Microsoft Windows Operating Systemto a version that resolves this vulnerability.Fixed in 6.3.9600.22577Patch KB5058403
Event History
Frequently Asked Questions
What is the severity of CVE-2025-32701?
CVE-2025-32701 has a critical severity level due to its potential to allow local privilege escalation.
How do I fix CVE-2025-32701?
To fix CVE-2025-32701, apply the latest security updates provided by Microsoft for the affected Windows versions.
Which systems are affected by CVE-2025-32701?
CVE-2025-32701 affects various Windows operating systems including Windows 10, Windows Server 2012, and Windows Server 2022.
Who can exploit CVE-2025-32701?
An authorized attacker with local access can exploit CVE-2025-32701 to elevate their privileges.
When was CVE-2025-32701 disclosed?
CVE-2025-32701 was disclosed as part of Microsoft's security updates in 2025.