logo

CVE-2025-62215: Microsoft Patches Windows Kernel Zero-Day Vulnerability Under Active Exploitation

ID: 60bc1147-3334-5f93-a724-3426474f4eb1

STIX ID: report--60bc1147-3334-5f93-a724-3426474f4eb1

Feed Name: SOC Prime Blog

Threat Score
75/100

Date Published: 2025-11-12

Date Updated: 2026-04-30

Author: Daryna Olyniychuk

...
...

Microsoft released fixes in November 2025 for CVE-2025-62215, a Windows Kernel race-condition privilege escalation (double-free) with a CVSS of 7.0 that is reported to be exploited in the wild; the flaw enables low-privileged local attackers or post-compromise actors to escalate to higher privileges, and affects all supported Windows editions including Windows 10 ESU, so immediate patching and layered defenses are recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.