logo

Microsoft fixes under-attack privilege-escalation holes in Hyper-V

ID: 3c865833-5e53-5f15-bdbf-5c5c01e6b1b2

STIX ID: report--3c865833-5e53-5f15-bdbf-5c5c01e6b1b2

Feed Name: The Register (Security)

Threat Score
78/100

Date Published: 2025-01-15

Date Updated: 2026-04-26

Author: Iain Thomson

...
...

Patch Tuesday: Microsoft and other vendors released fixes for multiple high‑risk vulnerabilities — notably three Hyper‑V privilege‑escalation zero‑days (CVE‑2025‑21333/21334/21335) reported as exploited in the wild, several 9.8-rated remote code execution flaws (including OLE, PGM and NTLMv1 issues), and Excel/Remote Desktop vulnerabilities likely to be weaponized; Adobe, Cisco and SAP also issued important patches. Administrators are advised to prioritize patching and apply recommended mitigations (for example, setting LmCompatibilityLevel to 5 to block NTLMv1) to address active and high‑impact issues.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.