CVE-2025-33068Uncontrolled Resource Consumption in Microsoft Windows Server 2012 R2

Severity
7.5HIGHNVD
EPSS
44.4%
top 2.43%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 10

Description

Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny service over a network.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages6 packages

NVDmicrosoft/windows< 10.0.14393.8148+4
CVEListV5microsoft/windows_server_201610.0.14393.010.0.14393.8148
CVEListV5microsoft/windows_server_201910.0.17763.010.0.17763.7434
CVEListV5microsoft/windows_server_202210.0.20348.010.0.20348.3807
CVEListV5microsoft/windows_server_202510.0.26100.010.0.26100.4349

🔴Vulnerability Details

2
GHSA
GHSA-qvxq-cwr5-42fq: Uncontrolled resource consumption in Windows Standards-Based Storage Management Service allows an unauthorized attacker to deny service over a network2025-06-10
CVEList
Windows Standards-Based Storage Management Service Denial of Service Vulnerability2025-06-10

📋Vendor Advisories

2
Microsoft
Windows Standards-Based Storage Management Service Denial of Service Vulnerability2025-06-10
Microsoft
An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.2022-06-14

🕵️Threat Intelligence

1
Bleepingcomputer
Microsoft June 2025 Patch Tuesday fixes exploited zero-day, 66 flaws2025-06-10
CVE-2025-33068 — Uncontrolled Resource Consumption | cvebase