CVE-2025-55687: Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Resilient File System (ReFS) allows an unauthorized attacker to elevate privileges locally.
Other sources
Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-55687?
CVE-2025-55687 is classified as a high-severity privilege elevation vulnerability.
How do I fix CVE-2025-55687?
To fix CVE-2025-55687, you should apply the available security patches provided by Microsoft for the affected versions.
What systems are affected by CVE-2025-55687?
CVE-2025-55687 affects various versions of Windows Server and Windows 10 and 11.
Can CVE-2025-55687 be exploited remotely?
CVE-2025-55687 requires local access to exploit, meaning attackers need physical or remote local access to the system.
What is the nature of CVE-2025-55687?
CVE-2025-55687 is a race condition vulnerability that allows unauthorized attackers to elevate privileges.