CVE-2025-24990CISA KEV
Microsoft Windows Untrusted Pointer Dereference Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Microsoft Windows Agere Modem Driver contains an untrusted pointer dereference vulnerability that allows for privilege escalation. An attacker who successfully exploited this vulnerability could gain administrator privileges.
- Product
- Windows
- Added to KEV
- 14 Oct 2025
- Federal remediation due
- 4 Nov 2025
- Known ransomware use
- Not reported