CVE-2025-55685: Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
Published Oct 14, 2025
·Updated
Use after free in Windows PrintWorkflowUserSvc allows an authorized attacker to elevate privileges locally.
Other sources
Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
— Microsoft
Affected Software
29 affected componentsFixes available
Microsoft PrintWorkflowUserSvc
Microsoft Windows Server 2025
Microsoft Windows 11=24H2
Microsoft Windows 11=24H2
Microsoft Windows Server 2022, 23H2 Edition
Microsoft Windows 11=23H2
Microsoft Windows 10=22H2
Microsoft Windows Server 2025
Microsoft Windows 11=23H2
Microsoft Windows 10=22H2
Microsoft Windows 11=22H2
Microsoft Windows 10=21H2
Microsoft Windows 10=21H2
Microsoft Windows 11=22H2
Microsoft Windows 10=22H2
Microsoft Windows 10=21H2
Microsoft Windows 11=25H2
Microsoft Windows Server 2022
Microsoft Windows 11=25H2
Microsoft Windows Server 2022
Microsoft Windows 10 21h2<10.0.19044.6456
Microsoft Windows 10 22h2<10.0.19045.6456
Microsoft Windows 11 22h2<10.0.22621.6060
Microsoft Windows 11 23h2<10.0.22631.6060
Microsoft Windows 11 24h2<10.0.26100.6899
Microsoft Windows 11 25h2<10.0.26200.6899
Microsoft Windows Server 2022<10.0.20348.4294
Microsoft Windows Server 2022 23h2<10.0.25398.1913
Microsoft Windows Server 2025<=10.0.26100.6899
Event History
Oct 14, 2025
CVE Published
via Microsoft·07:00 AM
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·02:00 PM
Affected Software
Updated
via Microsoft·02:00 PM
Description
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionSeverity
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-55685?
CVE-2025-55685 is classified as an Elevation of Privilege vulnerability.
2
How do I fix CVE-2025-55685?
To fix CVE-2025-55685, apply the latest security updates and patches provided by Microsoft.
3
Which software is affected by CVE-2025-55685?
CVE-2025-55685 affects Microsoft PrintWorkflowUserSvc on various Windows operating systems including Windows 11 and Windows Server 2025.
4
Can CVE-2025-55685 be exploited remotely?
No, CVE-2025-55685 can only be exploited locally by an authorized attacker.
5
What are the potential impacts of CVE-2025-55685?
The potential impact of CVE-2025-55685 is privilege escalation, allowing an attacker to gain higher access rights on the system.