vulnerability
Microsoft Windows: CVE-2025-24068: Windows Storage Management Provider Information Disclosure Vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:L/AC:L/Au:S/C:C/I:N/A:N) | Jun 10, 2025 | Jun 10, 2025 | Sep 17, 2025 |
Severity
5
CVSS
(AV:L/AC:L/Au:S/C:C/I:N/A:N)
Published
Jun 10, 2025
Added
Jun 10, 2025
Modified
Sep 17, 2025
Description
Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
Solutions
microsoft-windows-windows_10-1507-kb5060998microsoft-windows-windows_10-1607-kb5061010microsoft-windows-windows_10-1809-kb5060531microsoft-windows-windows_10-21h2-kb5060533microsoft-windows-windows_10-22h2-kb5060533microsoft-windows-windows_11-22h2-kb5060999microsoft-windows-windows_11-23h2-kb5060999microsoft-windows-windows_11-24h2-kb5060842microsoft-windows-windows_server_2016-1607-kb5061010microsoft-windows-windows_server_2019-1809-kb5060531microsoft-windows-windows_server_2022-21h2-kb5060526microsoft-windows-windows_server_2022-22h2-kb5060526microsoft-windows-windows_server_2022-23h2-kb5060118microsoft-windows-windows_server_2025-24h2-kb5060842
References
- CVE-2025-24068
- https://attackerkb.com/topics/CVE-2025-24068
- CWE-126
- URL-https://support.microsoft.com/help/5060118
- URL-https://support.microsoft.com/help/5060526
- URL-https://support.microsoft.com/help/5060531
- URL-https://support.microsoft.com/help/5060533
- URL-https://support.microsoft.com/help/5060842
- URL-https://support.microsoft.com/help/5060998
- URL-https://support.microsoft.com/help/5060999
- URL-https://support.microsoft.com/help/5061010
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.