Integer Overflow Vulnerability in Windows Hyper-V by Microsoft
CVE-2025-54091

7.8HIGH

What is CVE-2025-54091?

An integer overflow vulnerability in Windows Hyper-V allows an authorized attacker to locally elevate their privileges. This weakness can be exploited to gain unauthorized access to sensitive functionalities, potentially compromising system integrity. Proper mitigation and timely updates are crucial to safeguard against such threats.

Affected Version(s)

Windows 10 Version 1507 x64-based Systems 10.0.10240.0 < 10.0.10240.21128

Windows 10 Version 1607 x64-based Systems 10.0.14393.0 < 10.0.14393.8422

Windows 10 Version 1809 x64-based Systems 10.0.17763.0 < 10.0.17763.7792

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.