CVE-2025-50169Race Condition in Microsoft Windows 11 Version 24h2

Severity
7.5HIGHNVD
EPSS
0.1%
top 76.57%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 12

Description

Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB allows an unauthorized attacker to execute code over a network.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.6 | Impact: 5.9

Affected Packages9 packages

NVDmicrosoft/windows< 10.0.26100.4851
NVDmicrosoft/windows_11_24h2< 10.0.26100.4851
CVEListV5microsoft/windows_server_202510.0.26100.010.0.26100.4946
CVEListV5microsoft/windows_11_version_24h210.0.26100.010.0.26100.4946

🔴Vulnerability Details

1
GHSA
GHSA-v988-c4mf-m38h: Concurrent execution using shared resource with improper synchronization ('race condition') in Windows SMB allows an unauthorized attacker to execute2025-08-12

📋Vendor Advisories

2
Microsoft
Windows SMB Remote Code Execution Vulnerability2025-08-12
Microsoft
vsock: Update rx_bytes on read_skb()2024-11-12

🕵️Threat Intelligence

1
Bleepingcomputer
Microsoft August 2025 Patch Tuesday fixes one zero-day, 107 flaws2025-08-12
CVE-2025-50169 — Race Condition in Microsoft | cvebase