vulnerability

Microsoft Windows: CVE-2025-29828: Windows Schannel Remote Code Execution Vulnerability

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Published
Jun 10, 2025
Added
Jun 10, 2025
Modified
Sep 17, 2025

Description

Missing release of memory after effective lifetime in Windows Cryptographic Services allows an unauthorized attacker to execute code over a network.

Solutions

microsoft-windows-windows_11-22h2-kb5060999microsoft-windows-windows_11-23h2-kb5060999microsoft-windows-windows_11-24h2-kb5060842microsoft-windows-windows_server_2022-21h2-kb5060526microsoft-windows-windows_server_2022-22h2-kb5060526microsoft-windows-windows_server_2022-23h2-kb5060118microsoft-windows-windows_server_2025-24h2-kb5060842
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.