Vulnerability · NVD
CVE-2025-24064
CRITICAL 8.1
Windows Domain Name Service Remote Code Execution Vulnerability
EPSS
0.49%
above median
percentile 65.9%
OS versions that fix this CVE
This CVE is resolved by the following OS security releases. Update the OS to at least the listed version.
- Windows Fixed in Windows Server 2025 (Server Core installation) 10.0.26100.3476 Windows Server 2025 10.0.26100.3476 Windows Server 2022 (Server Core installation) 10.0.20348.3328 Windows Server 2022 10.0.25398.1486 Windows Server 2019 (Server Core installation) 10.0.17763.7009 Windows Server 2019 10.0.17763.7009 Windows Server 2016 (Server Core installation) 10.0.14393.7876 Windows Server 2016 10.0.14393.7876