Microsoft

Windows 11 25h2

1189 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 1.64%
  • Veröffentlicht 11.08.2026 17:04:19
  • Zuletzt bearbeitet 16.08.2026 19:17:04

Heap-based buffer overflow in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.59%
  • Veröffentlicht 11.08.2026 17:04:18
  • Zuletzt bearbeitet 16.08.2026 19:17:00

Partial string comparison in Windows HTTP Protocol Stack allows an unauthorized attacker to perform tampering over an adjacent network.

Medienbericht
  • EPSS 0.32%
  • Veröffentlicht 11.08.2026 17:04:17
  • Zuletzt bearbeitet 16.08.2026 19:17:00

Heap-based buffer overflow in Windows Device Association Service allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.25%
  • Veröffentlicht 11.08.2026 17:04:16
  • Zuletzt bearbeitet 16.08.2026 19:16:58

Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.39%
  • Veröffentlicht 11.08.2026 17:04:15
  • Zuletzt bearbeitet 16.08.2026 19:16:58

Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.34%
  • Veröffentlicht 11.08.2026 17:04:15
  • Zuletzt bearbeitet 13.08.2026 16:56:17

Untrusted pointer dereference in Windows Kernel allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.4%
  • Veröffentlicht 11.08.2026 17:04:14
  • Zuletzt bearbeitet 16.08.2026 19:16:59

Use of uninitialized resource in Windows Imaging Component allows an authorized attacker to disclose information locally.

Medienbericht
  • EPSS 0.2%
  • Veröffentlicht 11.08.2026 17:04:14
  • Zuletzt bearbeitet 16.08.2026 19:17:00

Heap-based buffer overflow in Windows HTTP.sys allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.19%
  • Veröffentlicht 11.08.2026 17:04:13
  • Zuletzt bearbeitet 18.08.2026 15:22:42

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Telephony Service allows an authorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.4%
  • Veröffentlicht 11.08.2026 17:04:13
  • Zuletzt bearbeitet 16.08.2026 19:16:59

Buffer over-read in Windows Win32K allows an authorized attacker to disclose information locally.