CVE-2025-62456: Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
Published Dec 9, 2025
·Updated
Heap-based buffer overflow in Windows Resilient File System (ReFS) allows an authorized attacker to execute code over a network.
Other sources
Windows Resilient File System (ReFS) Remote Code Execution Vulnerability
— Microsoft
Affected Software
17 affected componentsFixes available
Microsoft Windows Server 2025
Microsoft Windows 11=24H2
Microsoft Windows 11=24H2
Microsoft Windows Server 2022, 23H2 Edition
Microsoft Windows 11=23H2
Microsoft Windows 11=25H2
Microsoft Windows Server 2022
Microsoft Windows Server 2025
Microsoft Windows Server 2022
Microsoft Windows 11=23H2
Microsoft Windows 11=25H2
Microsoft Windows 11 23h2<10.0.22631.6345
Microsoft Windows 11 24h2<10.0.26100.7392
Microsoft Windows 11 25h2<10.0.26200.7392
Microsoft Windows Server 2022<10.0.20348.4467
Microsoft Windows Server 2022 23h2<10.0.25398.2025
Microsoft Windows Server 2025<10.0.26100.7392
Event History
Dec 9, 2025
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Description
CVE Published
via MITRE·05:55 PM
Data Sourced
via MITRE·05:55 PM
DescriptionSeverity
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-62456?
CVE-2025-62456 has a critical severity rating due to its potential to allow remote code execution.
2
How do I fix CVE-2025-62456?
To fix CVE-2025-62456, apply the patches provided by Microsoft for any affected versions of Windows.
3
What systems are impacted by CVE-2025-62456?
CVE-2025-62456 affects Microsoft Windows Server 2025 and Windows 11 versions 23H2, 24H2, and 25H2.
4
Can CVE-2025-62456 be exploited remotely?
Yes, CVE-2025-62456 allows an authorized attacker to execute code over a network.
5
What is the nature of the vulnerability in CVE-2025-62456?
CVE-2025-62456 is a heap-based buffer overflow vulnerability in the Windows Resilient File System (ReFS).