Description
Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose information locally.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6Attack Vector: Local
Complexity: Low
Privileges: Low
User Interaction: None
Scope: Unchanged
Confidentiality: High
Integrity: None
Availability: None
Affected Packages22 packages
🔴Vulnerability Details
2GHSAGHSA-fgf2-43wx-4mv7: Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose information locally↗2025-06-10 ▶ CVEListWindows Storage Management Provider Information Disclosure Vulnerability↗2025-06-10 ▶ 📋Vendor Advisories
1MicrosoftWindows Storage Management Provider Information Disclosure Vulnerability↗2025-06-10 ▶ 🕵️Threat Intelligence
1BleepingcomputerMicrosoft June 2025 Patch Tuesday fixes exploited zero-day, 66 flaws↗2025-06-10 ▶