Denial of Service Vulnerability in Windows Hyper-V by Microsoft
CVE-2025-29955

6.2MEDIUM

What is CVE-2025-29955?

A vulnerability in Microsoft's Windows Hyper-V arises from improper input validation, enabling unauthorized attackers to conduct denial-of-service attacks locally. This can lead to disruption in services for users and organizations reliant on this virtualization technology, necessitating prompt mitigation to safeguard operational integrity. For more information, visit the Microsoft Advisory.

Affected Version(s)

Windows 11 Version 24H2 x64-based Systems 10.0.26100.0 < 10.0.26100.4061

Windows Server 2022, 23H2 Edition (Server Core installation) x64-based Systems 10.0.25398.0 < 10.0.25398.1611

Windows Server 2025 (Server Core installation) x64-based Systems 10.0.26100.0 < 10.0.26100.4061

References

CVSS V3.1

Score:
6.2
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.