Out-of-Bounds Read Vulnerability in Windows MapUrlToZone
CVE-2025-59208
7.1HIGH
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 14 October 2025
What is CVE-2025-59208?
An out-of-bounds read vulnerability in Windows MapUrlToZone enables unauthorized attackers to disclose sensitive information over a network connection. This issue arises when the system mishandles memory operations, allowing potential exposure of confidential data. Attackers exploiting this type of vulnerability can potentially gain access to information that should be protected, leading to further security risks.
Affected Version(s)
Windows 10 Version 1507 32-bit Systems 10.0.10240.0 < 10.0.10240.21161
Windows 10 Version 1607 32-bit Systems 10.0.14393.0 < 10.0.14393.8519
Windows 10 Version 1809 32-bit Systems 10.0.17763.0 < 10.0.17763.7919
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved