CVE-2025-55698NULL Pointer Dereference in Microsoft Windows 11 Version 24h2

Severity
7.7HIGHNVD
EPSS
0.2%
top 60.93%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 14

Description

Null pointer dereference in Windows DirectX allows an authorized attacker to deny service over a network.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:HExploitability: 3.1 | Impact: 4.0

Affected Packages6 packages

NVDmicrosoft/windows_11_24h2< 10.0.26100.6899
NVDmicrosoft/windows_11_25h2< 10.0.26200.6899
CVEListV5microsoft/windows_server_202510.0.26100.010.0.26100.6899
CVEListV5microsoft/windows_11_version_24h210.0.26100.010.0.26100.6899
CVEListV5microsoft/windows_11_version_25h210.0.26200.010.0.26200.6899

🔴Vulnerability Details

2
CVEList
DirectX Graphics Kernel Denial of Service Vulnerability2025-10-14
GHSA
GHSA-wfr5-4742-mmvg: Null pointer dereference in Windows DirectX allows an authorized attacker to deny service over a network2025-10-14

📋Vendor Advisories

1
Microsoft
DirectX Graphics Kernel Denial of Service Vulnerability2025-10-14

🕵️Threat Intelligence

1
Bleepingcomputer
Microsoft October 2025 Patch Tuesday fixes 6 zero-days, 172 flaws2025-10-14
CVE-2025-55698 — NULL Pointer Dereference in Microsoft | cvebase