We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2025-33052

Windows DWM Core Library Information Disclosure Vulnerability



Description

Use of uninitialized resource in Windows DWM Core Library allows an authorized attacker to disclose information locally.

Reserved 2025-04-15 | Published 2025-06-10 | Updated 2025-06-11 | Assigner microsoft


MEDIUM: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C

Problem types

CWE-908: Use of Uninitialized Resource

Product status

10.0.17763.0 before 10.0.17763.7434
affected

10.0.17763.0 before 10.0.17763.7434
affected

10.0.17763.0 before 10.0.17763.7434
affected

10.0.20348.0 before 10.0.20348.3807
affected

10.0.19044.0 before 10.0.19044.5965
affected

10.0.22621.0 before 10.0.22621.5472
affected

10.0.19045.0 before 10.0.19045.5965
affected

10.0.26100.0 before 10.0.26100.4349
affected

10.0.22631.0 before 10.0.22631.5472
affected

10.0.22631.0 before 10.0.22631.5472
affected

10.0.25398.0 before 10.0.25398.1665
affected

10.0.26100.0 before 10.0.26100.4349
affected

10.0.26100.0 before 10.0.26100.4349
affected

References

msrc.microsoft.com/update-guide/vulnerability/CVE-2025-33052 (Windows DWM Core Library Information Disclosure Vulnerability) vendor-advisory

cve.org (CVE-2025-33052)

nvd.nist.gov (CVE-2025-33052)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2025-33052

Support options

Helpdesk Chat, Email, Knowledgebase