Home

Description

Time-of-check time-of-use (toctou) race condition in Microsoft Defender for Linux allows an authorized attacker to deny service locally.

PUBLISHED Reserved 2025-09-17 | Published 2025-10-14 | Updated 2025-10-15 | Assigner microsoft




HIGH: 7.0CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C

Problem types

CWE-367: Time-of-check Time-of-use (TOCTOU) Race Condition

Product status

101.0.0 before 101.25032.0010
affected

References

msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59497 (Microsoft Defender for Linux Denial of Service Vulnerability) vendor-advisory

cve.org (CVE-2025-59497)

nvd.nist.gov (CVE-2025-59497)

Download JSON