CNNVD-202507-1105 Information
CNNVD ID
CNNVD-202507-1105
Related CVE
- CNNVD Published: 2025-07-08
Description (Chinese)
Microsoft Windows User-mode Driver Framework是美国微软(Microsoft)公司的用户模式驱动程序框架。 Microsoft Windows User-mode Driver Framework存在信息泄露漏洞。攻击者利用该漏洞可以获取敏感信息。以下产品和版本受到影响:Windows 10 Version 1809 for 32-bit Systems,Windows 10 Version 1809 for x64-based Systems,Windows Server 2019,Windows Server 2019 (Server Core installation),Windows Server 2022,Windows Server 2022 (Server Core installation),Windows 10 Version 21H2 for 32-bit Systems,Windows 10 Version 21H2 for ARM64-based Systems,Windows 10 Version 21H2 for x64-based Systems,Windows 11 Version 22H2 for ARM64-based Systems,Windows 11 Version 22H2 for x64-based Systems,Windows 10 Version 22H2 for x64-based Systems,Windows 10 Version 22H2 for ARM64-based Systems,Windows 10 Version 22H2 for 32-bit Systems,Windows Server 2025 (Server Core installation),Windows 11 Version 23H2 for ARM64-based Systems,Windows 11 Version 23H2 for x64-based Systems,Windows Server 2022, 23H2 Edition (Server Core installation),Windows 11 Version 24H2 for ARM64-based Systems,Windows 11 Version 24H2 for x64-based Systems,Windows Server 2025,Windows 10 for 32-bit Systems,Windows 10 for x64-based Systems,Windows 10 Version 1607 for 32-bit Systems,Windows 10 Version 1607 for x64-based Systems,Windows Server 2016,Windows Server 2016 (Server Core installation),Windows Server 2008 R2 for x64-based Systems Service Pack 1,Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation),Windows Server 2012,Windows Server 2012 (Server Core installation),Windows Server 2012 R2,Windows Server 2012 R2 (Server Core installation)。
Description (English)
Microsoft Windows User-mode Driver Framework is a user model driver framework for Microsoft (MSC) in the United States. Microsoft Windows User-mode Driver Framework has a leak. The attackers use that loophole to obtain sensitive information. The following products and versions have been affected: Wows for Wow-Bys, Wows for Wow-Bysy-Bysys, Wows for Wows for Wow-Bysbys for Wow-Bysys for Wows for, Wows for,gives for,gives for,gives for,gives for,gives for,gives for,gives for,gives for,gives for,gives for,gives for,gives for,gives for,gs for,gives for,gs for,gs for,gs for,gs for,gs for,gs for,gs for,gs for,gs for,gs for,gs forgs for,gs for,gs for,gs for,gs for,gs forgs for,gs for,gs forgs forgs for,gs for,gs forgs for, andgs forgs forgs forgs for
Hazard Level
High
Vulnerability Type
信息泄露
Affected Vendor
微软
Published
2025-07-08
Last Modified
2026-02-24
References
https://nvd.nist.gov/vuln/detail/CVE-2025-49664
Patch
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-49664
Share on: