CVE-2025-64661: Windows Shell Elevation of Privilege Vulnerability
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Shell allows an authorized attacker to elevate privileges locally.
Other sources
Windows Shell Elevation of Privilege Vulnerability
— Microsoft
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.6691Patch KB5071546 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26200.7462Fixed in 10.0.26200.7392Patch KB5072014 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22631.6345Patch KB5071417 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26100.7462Fixed in 10.0.26100.7392Patch KB5072014 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.6691Patch KB5071546 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.8146Patch KB5071544 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.4529Fixed in 10.0.20348.4467Patch KB5071413 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.8688Patch KB5071543 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.25398.2025Patch KB5071542
Event History
Frequently Asked Questions
What is the severity of CVE-2025-64661?
CVE-2025-64661 is classified as an Elevation of Privilege vulnerability which can grant an attacker higher privileges on an affected system.
How do I fix CVE-2025-64661?
To fix CVE-2025-64661, apply the appropriate security update provided by Microsoft for your specific version of Windows.
Which versions of Windows are affected by CVE-2025-64661?
CVE-2025-64661 affects various versions of Windows including Windows Server 2016, Windows 10, and Windows 11.
Can CVE-2025-64661 be exploited remotely?
No, CVE-2025-64661 requires local access to the system for an attacker to exploit the vulnerability.
What types of attacks does CVE-2025-64661 enable?
CVE-2025-64661 enables attackers to elevate their privileges, potentially allowing them to execute arbitrary code or access restricted areas of the system.