CVE-2025-53805Out-of-bounds Read in Microsoft Windows 11 Version 22h2

CWE-125Out-of-bounds Read4 documents4 sources
Severity
7.5HIGHNVD
EPSS
0.2%
top 62.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 9

Description

Out-of-bounds read in Windows Internet Information Services allows an unauthorized attacker to deny service over a network.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages10 packages

NVDmicrosoft/windows< 10.0.20348.4106+2
NVDmicrosoft/windows_11_22h2< 10.0.22621.5909
NVDmicrosoft/windows_11_23h2< 10.0.22631.5909
NVDmicrosoft/windows_11_24h2< 10.0.26100.6508
CVEListV5microsoft/windows_server_202210.0.20348.010.0.20348.4171

🔴Vulnerability Details

2
GHSA
GHSA-j53j-mff4-vmcg: Out-of-bounds read in Windows Internet Information Services allows an unauthorized attacker to deny service over a network2025-09-09
CVEList
HTTP.sys Denial of Service Vulnerability2025-09-09

📋Vendor Advisories

1
Microsoft
HTTP.sys Denial of Service Vulnerability2025-09-09
CVE-2025-53805 — Out-of-bounds Read in Microsoft | cvebase