logo

Microsoft RasMan DoS 0-day gets unofficial patch - and a working exploit

ID: 5be173ab-baa4-5fe5-bc3f-5df40787ab98

STIX ID: report--5be173ab-baa4-5fe5-bc3f-5df40787ab98

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2025-12-12

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

A new unpatched Windows zero-day in the RasMan (Remote Access Connection Manager) service can crash the service via a circular linked-list processing bug and enable local privilege escalation to SYSTEM; a working exploit is publicly available and undetected by AV, while 0patch has released a free micropatch and Microsoft has not yet provided an official patch.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.