CVE-2025-60709: Windows Common Log File System Driver Elevation of Privilege Vulnerability
Out-of-bounds read in Windows Common Log File System Driver allows an authorized attacker to elevate privileges locally.
Other sources
Windows Common Log File System Driver Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-60709?
CVE-2025-60709 has a high severity rating due to its potential for local privilege escalation.
How do I fix CVE-2025-60709?
To mitigate CVE-2025-60709, apply the relevant patches provided by Microsoft for affected Windows products.
Which versions of Windows are affected by CVE-2025-60709?
CVE-2025-60709 affects multiple versions including Windows Server 2008 R2, 2012, 2012 R2, 2016, 2019, 2022, and Windows 10, 11 with specific version requirements.
Can CVE-2025-60709 be exploited remotely?
No, CVE-2025-60709 requires local access for an attacker to exploit the vulnerability.
What are the potential impacts of CVE-2025-60709?
If exploited, CVE-2025-60709 can allow an attacker to elevate their privileges on the affected system.