CVE-2025-59197: Windows ETL Channel Information Disclosure Vulnerability
Insertion of sensitive information into log file in Windows ETL Channel allows an authorized attacker to disclose information locally.
Other sources
Windows ETL Channel Information Disclosure Vulnerability
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-59197?
The severity of CVE-2025-59197 is classified as moderate due to its potential for local information disclosure.
How do I fix CVE-2025-59197?
To fix CVE-2025-59197, apply the relevant security updates and patches provided by Microsoft for your affected Windows version.
What versions of Windows are affected by CVE-2025-59197?
CVE-2025-59197 affects various versions of Windows 10, Windows 11, and Windows Server, specifically marked in Microsoft's update documentation.
Can an authorized attacker exploit CVE-2025-59197?
Yes, an authorized attacker can exploit CVE-2025-59197 to potentially disclose sensitive information stored in the Windows ETL Channel.
What kind of information is vulnerable due to CVE-2025-59197?
CVE-2025-59197 allows for the potential disclosure of sensitive information logged in the Windows ETL Channel.