cbcvebase.
CVE-2025-50176
published 2025-08-12

CVE-2025-50176: Access of resource using incompatible type ('type confusion') in Graphics Kernel allows an authorized attacker to execute code locally.

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
Access of resource using incompatible type ('type confusion') in Graphics Kernel allows an authorized attacker to execute code locally.

Affected

21 ranges
VendorProductVersion rangeFixed in
microsoftwindows_11_22h2< 10.0.22621.576810.0.22621.5768
microsoftwindows_11_23h2< 10.0.22631.576810.0.22631.5768
microsoftwindows_11_24h2< 10.0.26100.485110.0.26100.4851
microsoftwindows_11_version_22h2>= 10.0.22621.0 < 10.0.22621.576810.0.22621.5768
microsoftwindows_11_version_22h3>= 10.0.22631.0 < 10.0.22631.576810.0.22631.5768
microsoftwindows_11_version_23h2>= 10.0.22631.0 < 10.0.22631.576810.0.22631.5768
microsoftwindows_11_version_24h2>= 10.0.26100.0 < 10.0.26100.494610.0.26100.4946
microsoftwindows_server_2022< 10.0.20348.398910.0.20348.3989
microsoftwindows_server_2022>= 10.0.20348.0 < 10.0.20348.405210.0.20348.4052
microsoftwindows_server_2022_23h2< 10.0.25398.179110.0.25398.1791
microsoftwindows_server_2025< 10.0.26100.485110.0.26100.4851
microsoftwindows_server_2025>= 10.0.26100.0 < 10.0.26100.494610.0.26100.4946
msrcwindows_11_version_22h2_for_arm64-based_systems
msrcwindows_11_version_22h2_for_x64-based_systems
msrcwindows_11_version_23h2_for_arm64-based_systems
msrcwindows_11_version_23h2_for_x64-based_systems
msrcwindows_11_version_24h2_for_arm64-based_systems
msrcwindows_11_version_24h2_for_x64-based_systems
msrcwindows_server_2022
msrcwindows_server_2022_23h2_edition
msrcwindows_server_2025