Home

Description

Cleartext storage of sensitive information in Windows Kernel allows an unauthorized attacker to bypass a security feature locally.

PUBLISHED Reserved 2025-08-12 | Published 2025-10-14 | Updated 2025-11-22 | Assigner microsoft




MEDIUM: 6.2CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C

Problem types

CWE-312: Cleartext Storage of Sensitive Information

Product status

10.0.26200.0 (custom) before 10.0.26200.6899
affected

10.0.22621.0 (custom) before 10.0.22621.6060
affected

10.0.22631.0 (custom) before 10.0.22631.6060
affected

10.0.22631.0 (custom) before 10.0.22631.6060
affected

10.0.26100.0 (custom) before 10.0.26100.6899
affected

References

msrc.microsoft.com/update-guide/vulnerability/CVE-2025-55334 (Windows Kernel Security Feature Bypass Vulnerability) vendor-advisory

cve.org (CVE-2025-55334)

nvd.nist.gov (CVE-2025-55334)

Download JSON