Null Pointer Dereference Vulnerability in Windows DirectX by Microsoft
CVE-2025-62465

6.5MEDIUM

What is CVE-2025-62465?

A vulnerability exists in Windows DirectX that allows an authorized attacker to exploit a null pointer dereference condition. This can result in a denial of service locally, potentially affecting the user's experience and system stability. Ensuring that the affected products are updated and patched is crucial to safeguard against exploitation of this vulnerability.

Affected Version(s)

Windows 11 version 22H3 ARM64-based Systems 10.0.22631.0 < 10.0.22631.6345

Windows 11 Version 23H2 x64-based Systems 10.0.22631.0 < 10.0.22631.6345

Windows 11 Version 24H2 ARM64-based Systems 10.0.26100.0 < 10.0.26100.7462

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-62465 : Null Pointer Dereference Vulnerability in Windows DirectX by Microsoft