CVE-2025-60708Untrusted Pointer Dereference in Microsoft Windows 10 Version 1607

Severity
6.5MEDIUMNVD
EPSS
0.0%
top 87.23%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 11

Description

Untrusted pointer dereference in Storvsp.sys Driver allows an authorized attacker to deny service locally.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:HExploitability: 2.0 | Impact: 4.0

Affected Packages20 packages

NVDmicrosoft/windows< 10.0.14393.8594+4
NVDmicrosoft/windows_10_1607< 10.0.14393.8594
NVDmicrosoft/windows_10_1809< 10.0.17763.8027
NVDmicrosoft/windows_10_21h2< 10.0.19044.6575
NVDmicrosoft/windows_10_22h2< 10.0.19045.6575

🔴Vulnerability Details

2
CVEList
Storvsp.sys Driver Denial of Service Vulnerability2025-11-11
GHSA
GHSA-3828-pjxx-wp2j: Untrusted pointer dereference in Storvsp2025-11-11

📋Vendor Advisories

1
Microsoft
Storvsp.sys Driver Denial of Service Vulnerability2025-11-11
CVE-2025-60708 — Untrusted Pointer Dereference | cvebase