Description
Exposure of sensitive information to an unauthorized actor in Storage Port Driver allows an authorized attacker to disclose information locally.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6Attack Vector: Local
Complexity: Low
Privileges: Low
User Interaction: None
Scope: Unchanged
Confidentiality: High
Integrity: None
Availability: None
Affected Packages4 packages
🔴Vulnerability Details
2CVEListWindows Storage Port Driver Information Disclosure Vulnerability↗2025-08-12 ▶ GHSAGHSA-2mc5-3c8c-rg8r: Exposure of sensitive information to an unauthorized actor in Storage Port Driver allows an authorized attacker to disclose information locally↗2025-08-12 ▶ 📋Vendor Advisories
2MicrosoftWindows Storage Port Driver Information Disclosure Vulnerability↗2025-08-12 ▶ Microsoftwifi: ath9k: add range check for conn_rsp_epid in htc_connect_service()↗2024-12-10 ▶ 🕵️Threat Intelligence
5BleepingcomputerMicrosoft August 2025 Patch Tuesday fixes one zero-day, 107 flaws↗2025-08-12 ▶ QualysMicrosoft and Adobe Patch Tuesday, August 2025 Security Update Review | Qualys↗2025-08-12 ▶ TalosMicrosoft Patch Tuesday for August 2025 — Snort rules and prominent vulnerabilities↗2025-08-12 ▶ TalosMicrosoft Patch Tuesday for August 2025 — Snort rules and prominent vulnerabilities↗2025-08-12 ▶ QualysMicrosoft and Adobe Patch Tuesday, August 2025 Security Update Review↗2025-08-12 ▶