Time-of-Check Time-of-Use Race Condition in Microsoft Defender for Linux
CVE-2025-59497

7HIGH

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
14 October 2025

What is CVE-2025-59497?

A time-of-check time-of-use (TOCTOU) race condition has been identified in Microsoft Defender for Linux, which permits local authorized attackers to cause a denial of service. Exploiting this vulnerability can hinder service functionality, posing significant risks to system reliability and integrity. It emphasizes the importance of robust security measures in software development and system configuration.

Affected Version(s)

Microsoft Defender for Endpoint for Linux Unknown 101.0.0 < 101.25032.0010

References

CVSS V3.1

Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-59497 : Time-of-Check Time-of-Use Race Condition in Microsoft Defender for Linux