CVE-2025-62215: Microsoft Patches Windows Kernel Zero-Day Vulnerability Under Active Exploitation
ID: 60bc1147-3334-5f93-a724-3426474f4eb1
STIX ID: report--60bc1147-3334-5f93-a724-3426474f4eb1
Feed Name: SOC Prime Blog
Threat Score
Microsoft released fixes in November 2025 for CVE-2025-62215, a Windows Kernel race-condition privilege escalation (double-free) with a CVSS of 7.0 that is reported to be exploited in the wild; the flaw enables low-privileged local attackers or post-compromise actors to escalate to higher privileges, and affects all supported Windows editions including Windows 10 ESU, so immediate patching and layered defenses are recommended.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
