CVE-2025-21333CISA KEV
Microsoft Windows Hyper-V NT Kernel Integration VSP Heap-based Buffer Overflow Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Windows Hyper-V NT Kernel Integration VSP contains a heap-based buffer overflow vulnerability that allows a local attacker to gain SYSTEM privileges.
- Product
- Windows
- Added to KEV
- 14 Jan 2025
- Federal remediation due
- 4 Feb 2025
- Known ransomware use
- Not reported