Privilege Elevation Vulnerability in Windows Subsystem for Linux by Microsoft
CVE-2025-53788
7HIGH
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 12 August 2025
What is CVE-2025-53788?
A race condition exists within the Windows Subsystem for Linux that allows an authorized attacker to exploit the time-of-check time-of-use (toctou) vulnerability, leading to potential privilege escalation. This issue could enable local attackers to alter the execution flow of the system, granting them elevated permissions and control over sensitive system resources.
Affected Version(s)
Windows Subsystem for Linux (WSL2) Unknown 5.0.0.0 < 2.5.10