CYBERSECURITYTRACKER
TRACKING7,183 stories in this site build1,510 vulnerability news stories in this site build
Vulnerabilities

August 2025 vulnerabilities

Browse this month's returned vendor patches and exploitation signals, with filtering and stable pages for browsing without JavaScript.

Microsoft reports 0 vulnerabilities with exploitation detected in the wild this month. This defender-focused view covers 286 vulnerabilities across 286 returned patch records from 1 vendor. Filter the complete month, or browse the static page trail without JavaScript.

286all patch recordsClear filters21criticalShow these records0Microsoft exploitation detectedShow these records0Microsoft in the Known Exploited Vulnerabilities catalogShow these records134tracked hereShow these records
Patch records
Returned Microsoft and cross-vendor release records. One Common Vulnerabilities and Exposures (CVE) identifier can appear in more than one record.
Tracked here
Records joined to a vulnerability record in this tracker.
Defender priority
Sorts Microsoft exploitation status, Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) catalog status, severity, and tracker coverage first.
More likely
Microsoft's Exploitability Index rating that exploitation is more likely. It is not a claim that exploitation was detected.

Narrow the complete month

Filters use every patch record in this month, including records on later static pages.

Clear all

Microsoft-only signal filters exclude records without Microsoft signal data as unknown, report them separately, and never count them as absent. “Tracked here” covers both Microsoft and cross-vendor records.

Loading the complete-month filter index…

An Exploit Prediction Scoring System (EPSS) percentage is the global 30-day exploitation probability in the wild, not specific to you. Do not read it as a complete risk score or as evidence about your environment or impact.

Page 1 of 2 · records 1 to 200 of 286

Microsoft Security Response Center

CVEDateProductMSRC severityOut-of-bandEPSSTitle
CVE-2025-53763 ↗Microsoft Purview Data GovernanceCriticalOut-of-band1%Microsoft rates: N/AAzure Databricks Elevation of Privilege Vulnerability
CVE-2025-53795 ↗Microsoft PC ManagerCriticalOut-of-band1%Microsoft rates: N/AMicrosoft PC Manager Elevation of Privilege Vulnerability
CVE-2025-48807 ↗Windows 10 Version 1809 for x64-based SystemsCritical0%Microsoft rates: Exploitation Less LikelyKB5065306KB5065425
and 7 moreKB5065426KB5065427KB5065428KB5065429KB5065431KB5065432KB5065474
Windows Hyper-V Remote Code Execution Vulnerability
CVE-2025-49707 ↗DCasv5-series Azure VMCritical0%Microsoft rates: Exploitation Less LikelyAzure Virtual Machines Spoofing Vulnerability
CVE-2025-50165 ↗Windows Server 2025 (Server Core installation)Critical10%Microsoft rates: Exploitation Less LikelyKB5063878KB50640101 mentionsWindows Graphics Component Remote Code Execution Vulnerability
CVE-2025-50176 ↗Windows Server 2022Critical0%Microsoft rates: Exploitation Less LikelyKB5063812KB5063875
and 4 moreKB5063878KB5063880KB5063899KB5064010
DirectX Graphics Kernel Remote Code Execution Vulnerability
CVE-2025-50177 ↗Windows 10 Version 1809 for 32-bit SystemsCritical4%Microsoft rates: Exploitation More LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2025-53731 ↗Microsoft Office 2019 for 32-bit editionsCritical1%Microsoft rates: Exploitation UnlikelyKB5002756Microsoft Office Remote Code Execution Vulnerability
CVE-2025-53733 ↗Microsoft SharePoint Enterprise Server 2016Critical0%Microsoft rates: Exploitation Less LikelyKB5002763KB5002769
and 3 moreKB5002770KB5002771KB5002772
Microsoft Word Remote Code Execution Vulnerability
CVE-2025-53740 ↗Microsoft Office 2019 for 32-bit editionsCritical1%Microsoft rates: Exploitation Less LikelyKB5002756Microsoft Office Remote Code Execution Vulnerability
CVE-2025-53766 ↗Windows 10 Version 1809 for 32-bit SystemsCritical7%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
GDI+ Remote Code Execution Vulnerability
CVE-2025-53778 ↗Windows 10 Version 1809 for 32-bit SystemsCritical39%Microsoft rates: Exploitation More LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows NTLM Elevation of Privilege Vulnerability
CVE-2025-53781 ↗DCasv5-series Azure VMCritical1%Microsoft rates: Exploitation Less LikelyAzure Virtual Machines Information Disclosure Vulnerability
CVE-2025-53784 ↗Microsoft 365 Apps for Enterprise for 32-bit SystemsCritical0%Microsoft rates: Exploitation UnlikelyMicrosoft Word Remote Code Execution Vulnerability
CVE-2025-53793 ↗Azure Stack Hub 2408Critical1%Microsoft rates: Exploitation UnlikelyAzure Stack Hub Information Disclosure Vulnerability
CVE-2025-53767 ↗Azure Open AICriticalOut-of-band1%Microsoft rates: N/AAzure OpenAI Elevation of Privilege Vulnerability
CVE-2025-53774 ↗Microsoft 365 Copilot's Business ChatCriticalOut-of-band1%Microsoft rates: Exploitation Less LikelyMicrosoft 365 Copilot BizChat Information Disclosure Vulnerability
CVE-2025-53787 ↗Microsoft 365 Copilot's Business ChatCriticalOut-of-band1%Microsoft rates: N/AMicrosoft 365 Copilot BizChat Information Disclosure Vulnerability
CVE-2025-53792 ↗Azure PortalCriticalOut-of-band1%Microsoft rating unavailableAzure Portal Elevation of Privilege Vulnerability
CVE-2025-38615 ↗azl3 kernel 6.6.96.1-1 on Azure Linux 3.0CriticalOut-of-bandNot availableMicrosoft rating unavailablefs/ntfs3: cancle set bad inode after removing name fails
CVE-2025-38561 ↗azl3 kernel 6.6.96.1-1 on Azure Linux 3.0CriticalOut-of-bandNot availableMicrosoft rating unavailableksmbd: fix Preauh_HashValue race condition
CVE-2025-55229 ↗Windows 10 Version 1809 for 32-bit SystemsImportantOut-of-band0%Microsoft rates: Exploitation UnlikelyKB5058379KB5058383
and 7 moreKB5058384KB5058385KB5058387KB5058392KB5058405KB5058411KB5058500
Windows Certificate Spoofing Vulnerability
CVE-2025-55230 ↗Windows 10 Version 1809 for 32-bit SystemsImportantOut-of-band0%Microsoft rates: Exploitation UnlikelyKB5062552KB5062553
and 12 moreKB5062554KB5062557KB5062560KB5062561KB5062570KB5062572KB5062592KB5062597KB5062618KB5062619KB5062624KB5062632
Windows MBT Transport Driver Elevation of Privilege Vulnerability
CVE-2025-55231 ↗Windows Server 2019ImportantOut-of-band0%Microsoft rates: Exploitation UnlikelyKB5062553KB5062557
and 3 moreKB5062560KB5062572KB5062597
Windows Storage-based Management Service Remote Code Execution Vulnerability
CVE-2025-24999 ↗Microsoft SQL Server 2017 for x64-based Systems (GDR)Important2%Microsoft rates: Exploitation Less LikelyKB5063756KB5063757
and 6 moreKB5063758KB5063759KB5063760KB5063761KB5063762KB5063814
Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-25005 ↗Microsoft Exchange Server 2019 Cumulative Update 14Important1%Microsoft rates: Exploitation Less LikelyKB5063221KB5063222
and 2 moreKB5063223KB5063224
Microsoft Exchange Server Tampering Vulnerability
CVE-2025-25006 ↗Microsoft Exchange Server 2019 Cumulative Update 15Important1%Microsoft rates: Exploitation Less LikelyKB5063221KB5063222
and 2 moreKB5063223KB5063224
Microsoft Exchange Server Spoofing Vulnerability
CVE-2025-25007 ↗Microsoft Exchange Server Subscription Edition RTMImportant1%Microsoft rates: Exploitation Less LikelyKB5063221KB5063222
and 2 moreKB5063223KB5063224
Microsoft Exchange Server Spoofing Vulnerability
CVE-2025-33051 ↗Microsoft Exchange Server 2019 Cumulative Update 14Important1%Microsoft rates: Exploitation Less LikelyKB5063221KB5063222
and 2 moreKB5063223KB5063224
Microsoft Exchange Server Information Disclosure Vulnerability
CVE-2025-47954 ↗Microsoft SQL Server 2022 for x64-based Systems (GDR)Important1%Microsoft rates: Exploitation Less LikelyKB5063756KB5063814Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-49712 ↗Microsoft SharePoint Enterprise Server 2016Important20%Microsoft rates: Exploitation Less LikelyKB5002769KB5002771Microsoft SharePoint Remote Code Execution Vulnerability
CVE-2025-49743 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation More LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Graphics Component Elevation of Privilege Vulnerability
CVE-2025-49745 ↗Microsoft Dynamics 365 (on-premises) version 9.1Important1%Microsoft rates: Exploitation Less LikelyKB5059086Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2025-49751 ↗Windows 10 Version 1809 for x64-based SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 7 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063899KB5064010
Windows Hyper-V Denial of Service Vulnerability
CVE-2025-49757 ↗Windows Server 2019Important1%Microsoft rates: Exploitation UnlikelyKB5062553KB5062557
and 9 moreKB5062560KB5062570KB5062572KB5062592KB5062597KB5062618KB5062619KB5062624KB5062632
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-49758 ↗Microsoft SQL Server 2017 for x64-based Systems (GDR)Important1%Microsoft rates: Exploitation Less LikelyKB5063756KB5063757
and 6 moreKB5063758KB5063759KB5063760KB5063761KB5063762KB5063814
Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-49759 ↗Microsoft SQL Server 2017 for x64-based Systems (GDR)Important1%Microsoft rates: Exploitation Less LikelyKB5063756KB5063757
and 6 moreKB5063758KB5063759KB5063760KB5063761KB5063762KB5063814
Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-49761 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation UnlikelyKB5063709KB5063812
and 12 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063927KB5063947KB5063950KB5064010
Windows Kernel Elevation of Privilege Vulnerability
CVE-2025-49762 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-50153 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 9 moreKB5063871KB5063875KB5063877KB5063880KB5063889KB5063906KB5063927KB5063947KB5063950
Desktop Window Manager Elevation of Privilege Vulnerability
CVE-2025-50154 ↗Windows 10 Version 1809 for 32-bit SystemsImportant26%Microsoft rates: Exploitation UnlikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Microsoft Windows File Explorer Spoofing Vulnerability
CVE-2025-50155 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation UnlikelyKB5063709KB5063812
and 10 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063950KB5064010
Windows Push Notifications Apps Elevation of Privilege Vulnerability
CVE-2025-50156 ↗Windows Server 2019Important1%Microsoft rates: Exploitation Less LikelyKB5063812KB5063871
and 11 moreKB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVE-2025-50157 ↗Windows Server 2019Important1%Microsoft rates: Exploitation UnlikelyKB5063812KB5063871
and 11 moreKB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVE-2025-50158 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows NTFS Information Disclosure Vulnerability
CVE-2025-50159 ↗Windows 10 Version 1809 for 32-bit SystemsImportant1%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 10 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063950KB5064010
Remote Access Point-to-Point Protocol (PPP) EAP-TLS Elevation of Privilege Vulnerability
CVE-2025-50160 ↗Windows Server 2019Important1%Microsoft rates: Exploitation Less LikelyKB5063812KB5063871
and 11 moreKB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-50161 ↗Windows 10 Version 1809 for 32-bit SystemsImportant1%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Win32k Elevation of Privilege Vulnerability
CVE-2025-50162 ↗Windows Server 2019Important1%Microsoft rates: Exploitation UnlikelyKB5063812KB5063871
and 11 moreKB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-50163 ↗Windows Server 2019Important1%Microsoft rates: Exploitation UnlikelyKB5063812KB5063871
and 11 moreKB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-50164 ↗Windows Server 2019Important1%Microsoft rates: Exploitation UnlikelyKB5063812KB5063871
and 11 moreKB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-50166 ↗Windows 10 Version 1809 for 32-bit SystemsImportant1%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Distributed Transaction Coordinator (MSDTC) Information Disclosure Vulnerability
CVE-2025-50167 ↗Windows 10 Version 1809 for x64-based SystemsImportant0%Microsoft rates: Exploitation More LikelyKB5063709KB5063812
and 10 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063950KB5064010
Windows Hyper-V Elevation of Privilege Vulnerability
CVE-2025-50168 ↗Windows 11 Version 22H2 for ARM64-based SystemsImportant1%Microsoft rates: Exploitation More LikelyKB5063875KB5063878
and 2 moreKB5063899KB5064010
Win32k Elevation of Privilege Vulnerability
CVE-2025-50169 ↗Windows Server 2025 (Server Core installation)Important1%Microsoft rates: Exploitation UnlikelyKB5063878KB5064010Windows SMB Remote Code Execution Vulnerability
CVE-2025-50170 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 6 moreKB5063875KB5063877KB5063878KB5063880KB5063899KB5064010
Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVE-2025-50171 ↗Windows Server 2022Important1%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 5 moreKB5063875KB5063878KB5063880KB5063899KB5064010
Remote Desktop Spoofing Vulnerability
CVE-2025-50172 ↗Windows 10 Version 1809 for 32-bit SystemsImportant1%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 6 moreKB5063875KB5063877KB5063878KB5063880KB5063899KB5064010
DirectX Graphics Kernel Denial of Service Vulnerability
CVE-2025-50173 ↗Multimedia Redirection InstallerImportant1%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Installer Elevation of Privilege Vulnerability
CVE-2025-53131 ↗Windows 10 Version 1809 for 32-bit SystemsImportant1%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 6 moreKB5063875KB5063877KB5063878KB5063880KB5063899KB5064010
Windows Media Remote Code Execution Vulnerability
CVE-2025-53132 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation More LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Win32k Elevation of Privilege Vulnerability
CVE-2025-53133 ↗Windows Server 2025 (Server Core installation)Important0%Microsoft rates: Exploitation Less LikelyKB5063878KB5064010Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
CVE-2025-53134 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-53135 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 9 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063950KB5064010
DirectX Graphics Kernel Elevation of Privilege Vulnerability
CVE-2025-53136 ↗Windows 10 Version 1809 for 32-bit SystemsImportant1%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
NT OS Kernel Information Disclosure Vulnerability
CVE-2025-53137 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-53138 ↗Windows Server 2019Important1%Microsoft rates: Exploitation UnlikelyKB5063812KB5063871
and 11 moreKB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVE-2025-53140 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Kernel Transaction Manager Elevation of Privilege Vulnerability
CVE-2025-53141 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-53142 ↗Windows 11 Version 22H2 for ARM64-based SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063875KB5063878
and 2 moreKB5063899KB5064010
Microsoft Brokering File System Elevation of Privilege Vulnerability
CVE-2025-53143 ↗Windows 10 Version 1809 for 32-bit SystemsImportant7%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2025-53144 ↗Windows 10 Version 1809 for 32-bit SystemsImportant6%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2025-53145 ↗Windows 10 Version 1809 for 32-bit SystemsImportant6%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2025-53147 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation More LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-53148 ↗Windows Server 2019Important1%Microsoft rates: Exploitation Less LikelyKB5063812KB5063871
and 11 moreKB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVE-2025-53149 ↗Windows 10 Version 1809 for 32-bit SystemsImportant1%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
CVE-2025-53151 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 6 moreKB5063875KB5063877KB5063878KB5063880KB5063899KB5064010
Windows Kernel Elevation of Privilege Vulnerability
CVE-2025-53152 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 9 moreKB5063871KB5063875KB5063877KB5063880KB5063889KB5063906KB5063927KB5063947KB5063950
Desktop Windows Manager Remote Code Execution Vulnerability
CVE-2025-53153 ↗Windows Server 2019Important1%Microsoft rates: Exploitation Less LikelyKB5063812KB5063871
and 11 moreKB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVE-2025-53154 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-53155 ↗Windows 10 Version 1809 for x64-based SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 10 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063950KB5064010
Windows Hyper-V Elevation of Privilege Vulnerability
CVE-2025-53156 ↗Windows Server 2025 (Server Core installation)Important1%Microsoft rates: Exploitation More LikelyKB5063878KB5063899
and 1 moreKB5064010
Windows Storage Port Driver Information Disclosure Vulnerability
CVE-2025-53716 ↗Windows 10 Version 1809 for 32-bit SystemsImportant1%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 6 moreKB5063875KB5063877KB5063878KB5063880KB5063899KB5064010
Windows Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability
CVE-2025-53718 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 14 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063888KB5063889KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-53719 ↗Windows Server 2019Important1%Microsoft rates: Exploitation Less LikelyKB5063812KB5063871
and 11 moreKB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVE-2025-53720 ↗Windows Server 2019Important1%Microsoft rates: Exploitation UnlikelyKB5063812KB5063871
and 11 moreKB5063877KB5063878KB5063880KB5063888KB5063899KB5063906KB5063927KB5063947KB5063948KB5063950KB5064010
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-53721 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 6 moreKB5063875KB5063877KB5063878KB5063880KB5063899KB5064010
Windows Connected Devices Platform Service Elevation of Privilege Vulnerability
CVE-2025-53722 ↗Windows 10 Version 1809 for 32-bit SystemsImportant19%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 12 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063927KB5063947KB5063950KB5064010
Windows Remote Desktop Services Denial of Service Vulnerability
CVE-2025-53723 ↗Windows 10 Version 1809 for x64-based SystemsImportant0%Microsoft rates: Exploitation Less LikelyKB5063709KB5063812
and 10 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063950KB5064010
Windows Hyper-V Elevation of Privilege Vulnerability
CVE-2025-53724 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation UnlikelyKB5063709KB5063812
and 10 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063950KB5064010
Windows Push Notifications Apps Elevation of Privilege Vulnerability
CVE-2025-53725 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation UnlikelyKB5063709KB5063812
and 10 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063950KB5064010
Windows Push Notifications Apps Elevation of Privilege Vulnerability
CVE-2025-53726 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation UnlikelyKB5063709KB5063812
and 10 moreKB5063871KB5063875KB5063877KB5063878KB5063880KB5063889KB5063899KB5063906KB5063950KB5064010
Windows Push Notifications Apps Elevation of Privilege Vulnerability
CVE-2025-53727 ↗Microsoft SQL Server 2022 for x64-based Systems (CU 20)Important1%Microsoft rates: Exploitation Less LikelyKB5063756KB5063757
and 6 moreKB5063758KB5063759KB5063760KB5063761KB5063762KB5063814
Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-53728 ↗Microsoft Dynamics 365 (on-premises) version 9.1Important1%Microsoft rates: Exploitation Less LikelyKB5064483Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability
CVE-2025-53729 ↗Azure File Sync v18Important0%Microsoft rates: Exploitation Less LikelyMicrosoft Azure File Sync Elevation of Privilege Vulnerability
CVE-2025-53730 ↗Microsoft Office 2019 for 32-bit editionsImportant0%Microsoft rates: Exploitation UnlikelyMicrosoft Office Visio Remote Code Execution Vulnerability
CVE-2025-53732 ↗Microsoft Office for AndroidImportant0%Microsoft rates: Exploitation Less LikelyMicrosoft Office Remote Code Execution Vulnerability
CVE-2025-53734 ↗Microsoft Office 2019 for 32-bit editionsImportant0%Microsoft rates: Exploitation Less LikelyMicrosoft Office Visio Remote Code Execution Vulnerability
CVE-2025-53735 ↗Office Online ServerImportant1%Microsoft rates: Exploitation Less LikelyKB5002752KB5002758Microsoft Excel Remote Code Execution Vulnerability
CVE-2025-53736 ↗Microsoft SharePoint Enterprise Server 2016Important1%Microsoft rates: Exploitation Less LikelyKB5002763KB5002769
and 3 moreKB5002770KB5002771KB5002772
Microsoft Word Information Disclosure Vulnerability
CVE-2025-53737 ↗Office Online ServerImportant1%Microsoft rates: Exploitation Less LikelyKB5002752KB5002758Microsoft Excel Remote Code Execution Vulnerability
CVE-2025-53738 ↗Microsoft Office 2019 for 32-bit editionsImportant1%Microsoft rates: Exploitation UnlikelyKB5002763Microsoft Word Remote Code Execution Vulnerability
CVE-2025-53739 ↗Office Online ServerImportant1%Microsoft rates: Exploitation Less LikelyKB5002752KB5002758Microsoft Excel Remote Code Execution Vulnerability
CVE-2025-53741 ↗Office Online ServerImportant1%Microsoft rates: Exploitation Less LikelyKB5002752KB5002758Microsoft Excel Remote Code Execution Vulnerability
CVE-2025-53759 ↗Office Online ServerImportant1%Microsoft rates: Exploitation Less LikelyKB5002752Microsoft Excel Remote Code Execution Vulnerability
CVE-2025-53760 ↗Microsoft SharePoint Enterprise Server 2016Important13%Microsoft rates: Exploitation Less LikelyKB5002769KB5002771
and 1 moreKB5002773
Microsoft SharePoint Elevation of Privilege Vulnerability
CVE-2025-53761 ↗Microsoft Office 2019 for 32-bit editionsImportant1%Microsoft rates: Exploitation Less LikelyKB5002765Microsoft PowerPoint Remote Code Execution Vulnerability
CVE-2025-53765 ↗Azure Stack HubImportant0%Microsoft rates: Exploitation UnlikelyAzure Stack Hub Information Disclosure Vulnerability
CVE-2025-53769 ↗Windows Security AppImportant0%Microsoft rates: Exploitation Less LikelyWindows Security App Spoofing Vulnerability
CVE-2025-53772 ↗Web Deploy 4.0Important24%Microsoft rates: Exploitation Less LikelyVulnCheckWeb Deploy Remote Code Execution Vulnerability
CVE-2025-53773 ↗Microsoft Visual Studio 2022 version 17.14Important3%Microsoft rates: Exploitation Less LikelyGitHub Copilot and Visual Studio Remote Code Execution Vulnerability
CVE-2025-53783 ↗Teams for D365 Remote Assist HoloLensImportant1%Microsoft rates: Exploitation Less LikelyMicrosoft Teams Remote Code Execution Vulnerability
CVE-2025-53786 ↗Microsoft Exchange Server Subscription Edition RTMImportant8%Microsoft rates: Exploitation More LikelyKB5047155KB5050672
and 2 moreKB5050673KB5050674
Microsoft Exchange Server Hybrid Deployment Elevation of Privilege Vulnerability
CVE-2025-53788 ↗Windows Subsystem for Linux (WSL2)Important0%Microsoft rates: Exploitation UnlikelyWindows Subsystem for Linux (WSL2) Kernel Elevation of Privilege Vulnerability
CVE-2025-53789 ↗Windows 10 Version 1809 for 32-bit SystemsImportant0%Microsoft rates: Exploitation UnlikelyKB5062552KB5062553
and 6 moreKB5062554KB5062557KB5062560KB5062561KB5062570KB5062572
Windows StateRepository API Server file Elevation of Privilege Vulnerability
CVE-2024-58240 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailabletls: separate no-async decryption request handling from async
CVE-2025-38656 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablewifi: iwlwifi: Fix error code in iwl_op_mode_dvm_start()
CVE-2025-38595 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablexen: fix UAF in dmabuf_exp_from_pages()
CVE-2025-38582 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableRDMA/hns: Fix double destruction of rsv_qp
CVE-2025-38565 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableperf/core: Exit early on perf_mmap() fail
CVE-2025-38572 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableipv6: reject malicious packets in ipv6_gso_segment()
CVE-2025-38584 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablepadata: Fix pd UAF once and for all
CVE-2025-38568 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenet/sched: mqprio: fix stack out-of-bounds write in tc entry parsing
CVE-2025-38563 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableperf/core: Prevent VMA split of buffer mappings
CVE-2025-38556 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableHID: core: Harden s32ton() against conversion to 0 bits
CVE-2025-38605 ↗azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablewifi: ath12k: Pass ab pointer directly to ath12k_dp_tx_get_encap_type()
CVE-2025-38555 ↗azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableusb: gadget : fix use-after-free in composite_dev_cleanup()
CVE-2025-38574 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablepptp: ensure minimal skb length in pptp_xmit()
CVE-2025-38609 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablePM / devfreq: Check governor before using governor->name
CVE-2025-38585 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablestaging: media: atomisp: Fix stack buffer overflow in gmin_get_var_int()
CVE-2025-38579 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablef2fs: fix KMSAN uninit-value in extent_info usage
CVE-2025-38533 ↗azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenet: libwx: fix the using of Rx buffer DMA
CVE-2025-38527 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablesmb: client: fix use-after-free in cifs_oplock_break
CVE-2025-38530 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablecomedi: pcl812: Fix bit shift out of bounds
CVE-2025-38543 ↗azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailabledrm/tegra: nvdec: Fix dma_alloc_coherent error check
CVE-2025-38538 ↗azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailabledmaengine: nbpfaxi: Fix memory corruption in probe()
CVE-2025-38677 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablef2fs: fix to avoid out-of-boundary access in dnode page
CVE-2025-38502 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablebpf: Fix oob access in cgroup local storage
CVE-2025-38548 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablehwmon: (corsair-cpro) Validate the size of the received input buffer
CVE-2025-38532 ↗azl3 kernel 6.6.96.1-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenet: libwx: properly reset Rx ring descriptor
CVE-2025-38535 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablephy: tegra: xusb: Fix unbalanced regulator disable in UTMI PHY mode
CVE-2025-38552 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablemptcp: plug races between subflow fail and subflow creation
CVE-2025-8715 ↗cbl2 postgresql 14.18-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablePostgreSQL pg_dump newline in object name executes arbitrary code in psql client and in restore target server
CVE-2025-8714 ↗azl3 postgresql 16.9-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablePostgreSQL pg_dump lets superuser of origin server execute arbitrary code in psql client
CVE-2025-38676 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailableiommu/amd: Avoid stack buffer overflow from kernel cmdline
CVE-2025-52194 ↗cbl2 libsndfile 1.0.31-3 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailableA buffer overflow vulnerability exists in libsndfile version 1.2.2 and potentially earlier versions when processing malformed IRCAM audio files. The vulnerability occurs in the ircam_read_header function at src/ircam.c:164 during sample rate processing, leading to memory corruption and potential code execution.
CVE-2025-38666 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenet: appletalk: Fix use-after-free in AARP proxy probe
CVE-2025-38500 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablexfrm: interface: fix use-after-free after changing collect_md xfrm interface
CVE-2025-38499 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableclone_private_mnt(): make sure that caller has CAP_SYS_ADMIN in the right userns
CVE-2025-8747 ↗azl3 keras 3.3.3-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableKeras safe_mode bypass allows arbitrary code execution when loading a malicious model.
CVE-2025-38617 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablenet/packet: fix a race in packet_set_ring() and packet_notifier()
CVE-2025-38652 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailablef2fs: fix to avoid out-of-boundary access in devs.path
CVE-2025-38618 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablevsock: Do not allow binding to VMADDR_PORT_ANY
CVE-2025-47907 ↗azl3 golang 1.24.5-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableIncorrect results returned from Rows.Scan in database/sql
CVE-2025-38665 ↗cbl2 kernel 5.15.200.1-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailablecan: netlink: can_changelink(): fix NULL pointer deref of struct can_priv::do_set_mode
CVE-2025-38660 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailable[ceph] parse_longname(): strrchr() expects NUL-terminated string
CVE-2025-3770 ↗azl3 edk2 20240524git3e722403cd16-9 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableSMM IDT Privilege Escalation Vulnerability
CVE-2025-38668 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ImportantOut-of-bandNot availableMicrosoft rating unavailableregulator: core: fix NULL dereference on unbind due to stale coupling data
CVE-2025-9288 ↗cbl2 reaper 3.1.1-19 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailableMissing type checks leading to hash rewind and passing on crafted data
CVE-2025-54351 ↗cbl2 iperf3 3.18-1 on CBL Mariner 2.0ImportantOut-of-bandNot availableMicrosoft rating unavailableIn iperf before 3.19.1, net.c has a buffer overflow when --skip-rx-copy is used (for MSG_TRUNC in recv).
CVE-2025-49736 ↗Microsoft Edge for AndroidModerate0%Microsoft rates: Exploitation UnlikelyMicrosoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVE-2025-53779 ↗Windows Server 2025 (Server Core installation)Moderate3%Microsoft rates: Exploitation Less LikelyPublicly disclosedKB5063878KB5064010Windows Kerberos Elevation of Privilege Vulnerability
CVE-2025-38675 ↗azl3 kernel 6.6.139.1-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablexfrm: state: initialize state_ptrs earlier in xfrm_state_find
CVE-2025-55159 ↗azl3 rust 1.90.0-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableslab allows out-of-bounds access in `get_disjoint_mut` due to incorrect bounds check
CVE-2025-38569 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebenet: fix BUG when creating VFs
CVE-2025-38597 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/rockchip: vop2: fail cleanly if missing a primary plane for a video-port
CVE-2025-38507 ↗azl3 kernel 6.6.112.1-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableHID: nintendo: avoid bluetooth suspend/resume stalls
CVE-2022-50233 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: eir: Fix using strlen with hdev->{dev_name,short_name}
CVE-2025-38560 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablex86/sev: Evict cache lines during SNP memory validation
CVE-2025-38614 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableeventpoll: Fix semi-unbounded recursion
CVE-2025-38583 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailableclk: xilinx: vcu: unregister pll_post only if registered correctly
CVE-2025-38578 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablef2fs: fix to avoid UAF in f2fs_sync_inode_meta()
CVE-2025-38576 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablepowerpc/eeh: Make EEH driver device hotplug safe
CVE-2025-38593 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableBluetooth: hci_sync: fix double free in 'hci_discovery_filter_clear()'
CVE-2025-38601 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewifi: ath11k: clear initialized flag for deinit-ed srng lists
CVE-2025-38581 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecrypto: ccp - Fix crash when rebind ccp device for ccp.ko
CVE-2025-38612 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablestaging: fbtft: fix potential memory leak in fbtft_framebuffer_alloc()
CVE-2025-54349 ↗azl3 iperf3 3.17.1-3 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableIn iperf before 3.19.1, iperf_auth.c has an off-by-one error and resultant heap-based buffer overflow.
CVE-2025-38566 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablesunrpc: fix handling of server side tls alerts
CVE-2025-38577 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablef2fs: fix to avoid panic in f2fs_evict_inode
CVE-2025-38571 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablesunrpc: fix client side handling of tls alerts
CVE-2025-38608 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf, ktls: Fix data corruption when using bpf_msg_pop_data() in ktls
CVE-2025-38562 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableksmbd: fix null pointer dereference error in generate_encryptionkey
CVE-2025-38610 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablepowercap: dtpm_cpu: Fix NULL pointer dereference in get_pd_power_uw()
CVE-2025-38590 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet/mlx5e: Remove skb secpath if xfrm state is not found
CVE-2025-38604 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewifi: rtl818x: Kill URBs before clearing tx status queue
CVE-2025-38602 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableiwlwifi: Add missing check for alloc_ordered_workqueue
CVE-2025-38591 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Reject narrower access to pointer ctx fields
CVE-2025-38553 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet/sched: Restrict conditions for adding duplicating netems to qdisc tree
CVE-2025-54409 ↗azl3 aide 0.18.6-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableAIDE null pointer dereference when reading incorrectly encoded xattr attributes from database (local DoS)
CVE-2025-38520 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/amdkfd: Don't call mmput from MMU notifier callback
CVE-2025-38501 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailableksmbd: limit repeated connections from clients with the same IP
CVE-2025-38528 ↗cbl2 kernel 5.15.186.1-1 on CBL Mariner 2.0ModerateOut-of-bandNot availableMicrosoft rating unavailablebpf: Reject %p% format string in bprintf-like helpers
CVE-2025-38537 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablenet: phy: Don't register LEDs for genphy
CVE-2025-38516 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablepinctrl: qcom: msm: mark certain pins as invalid for interrupts
CVE-2025-38512 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablewifi: prevent A-MSDU attacks in mesh networks
CVE-2025-38529 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablecomedi: aio_iiro_16: Fix bit shift out of bounds
CVE-2025-38515 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailabledrm/sched: Increment job count before swapping tail spsc queue
CVE-2025-38514 ↗azl3 kernel 6.6.96.2-2 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablerxrpc: Fix oops due to non-existence of prealloc backlog struct
CVE-2025-38544 ↗azl3 kernel 6.6.96.2-1 on Azure Linux 3.0ModerateOut-of-bandNot availableMicrosoft rating unavailablerxrpc: Fix bug due to prealloc collision

Glossary