Windows · Build corrective · Tous les builds Windows
10.0.25398.1551
Advisory MSRCLa build Windows 10.0.25398.1551, publiée le 2025-04-08, corrige 76 CVE, dont 1 activement exploitée (CISA KEV), déployée sur 1 SKU.
- Publiée le
- 2025-04-08
- SKU couvertes
- 1
- CVE corrigées
- 76
- KEV CISA
- 1
6 critique · 70 élevé
SKU Windows couvertes par cette build
Les SKU ci-dessous partagent ce numéro de build MSRC. Pousser la KB correspondante les sécurise toutes simultanément.
CVE corrigées par cette build
| CVE |
|---|
|
CVE-2025-29824
HIGH 7.8
KEV
Windows Common Log File System Driver Elevation of Privilege Vulnerability |
|
CVE-2025-26669
HIGH 8.8
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-27477
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-27740
HIGH 8.8
Active Directory Certificate Services Elevation of Privilege Vulnerability |
|
CVE-2025-21205
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21221
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-21222
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-26647
HIGH 8.8
Windows Kerberos Elevation of Privilege Vulnerability |
|
CVE-2025-27481
HIGH 8.8
Windows Telephony Service Remote Code Execution Vulnerability |
|
CVE-2025-27737
HIGH 8.6
Windows Security Zone Mapping Security Feature Bypass Vulnerability |
|
CVE-2022-2601
HIGH 8.6
A buffer overflow was found in grub_font_construct_glyph(). A malicious crafted pf2 font can lead to an overflow when calculating the max_glyph_size value, all… |
|
CVE-2025-26678
HIGH 8.4
Windows Defender Application Control Security Feature Bypass Vulnerability |
|
CVE-2023-40547
HIGH 8.3
A remote code execution vulnerability was found in Shim. The Shim boot support trusts attacker-controlled values when parsing an HTTP response. This flaw allow… |
|
CVE-2025-26663
CRITICAL 8.1
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability |
|
CVE-2025-26670
CRITICAL 8.1
Lightweight Directory Access Protocol (LDAP) Client Remote Code Execution Vulnerability |
|
CVE-2025-26671
HIGH 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2025-27480
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2025-27482
CRITICAL 8.1
Windows Remote Desktop Services Remote Code Execution Vulnerability |
|
CVE-2025-27487
HIGH 8.0
Remote Desktop Client Remote Code Execution Vulnerability |
|
CVE-2025-26666
HIGH 7.8
Windows Media Remote Code Execution Vulnerability |
|
CVE-2025-26688
HIGH 7.8
Microsoft Virtual Hard Disk Elevation of Privilege Vulnerability |
|
CVE-2025-27476
HIGH 7.8
Windows Digital Media Elevation of Privilege Vulnerability |
|
CVE-2025-24074
HIGH 7.8
Microsoft DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-24073
HIGH 7.8
Microsoft DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-21204
HIGH 7.8
Windows Process Activation Elevation of Privilege Vulnerability |
|
CVE-2025-24058
HIGH 7.8
Windows DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-26639
HIGH 7.8
Windows USB Print Driver Elevation of Privilege Vulnerability |
|
CVE-2025-26648
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2025-26674
HIGH 7.8
Windows Media Remote Code Execution Vulnerability |
|
CVE-2025-26675
HIGH 7.8
Windows Subsystem for Linux Elevation of Privilege Vulnerability |
|
CVE-2025-26679
HIGH 7.8
RPC Endpoint Mapper Service Elevation of Privilege Vulnerability |
|
CVE-2025-27490
HIGH 7.8
Windows Bluetooth Service Elevation of Privilege Vulnerability |
|
CVE-2025-27727
HIGH 7.8
Windows Installer Elevation of Privilege Vulnerability |
|
CVE-2025-27731
HIGH 7.8
Microsoft OpenSSH for Windows Elevation of Privilege Vulnerability |
|
CVE-2025-27730
HIGH 7.8
Windows Digital Media Elevation of Privilege Vulnerability |
|
CVE-2025-27739
HIGH 7.8
Windows Kernel Elevation of Privilege Vulnerability |
|
CVE-2025-29812
HIGH 7.8
DirectX Graphics Kernel Elevation of Privilege Vulnerability |
|
CVE-2025-29811
HIGH 7.8
Windows Mobile Broadband Driver Elevation of Privilege Vulnerability |
|
CVE-2025-24060
HIGH 7.8
Microsoft DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-24062
HIGH 7.8
Microsoft DWM Core Library Elevation of Privilege Vulnerability |
|
CVE-2025-26687
HIGH 7.5
Use after free in Windows Win32K - GRFX allows an unauthorized attacker to elevate privileges over a network. |
|
CVE-2025-26668
HIGH 7.5
Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
|
CVE-2025-26686
CRITICAL 7.5
Windows TCP/IP Remote Code Execution Vulnerability |
|
CVE-2025-27473
HIGH 7.5
HTTP.sys Denial of Service Vulnerability |
|
CVE-2025-27479
HIGH 7.5
Kerberos Key Distribution Proxy Service Denial of Service Vulnerability |
|
CVE-2025-26641
HIGH 7.5
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability |
|
CVE-2025-26673
HIGH 7.5
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability |
|
CVE-2025-27469
HIGH 7.5
Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability |
|
CVE-2025-27484
HIGH 7.5
Windows Universal Plug and Play (UPnP) Device Host Elevation of Privilege Vulnerability |
|
CVE-2025-29810
HIGH 7.5
Active Directory Domain Services Elevation of Privilege Vulnerability |
|
CVE-2025-27491
CRITICAL 7.1
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2025-29809
HIGH 7.1
Windows Kerberos Security Feature Bypass Vulnerability |
|
CVE-2025-26665
HIGH 7.0
Windows upnphost.dll Elevation of Privilege Vulnerability |
|
CVE-2025-27478
HIGH 7.0
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability |
|
CVE-2025-21191
HIGH 7.0
Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability |
|
CVE-2025-26640
HIGH 7.0
Windows Digital Media Elevation of Privilege Vulnerability |
|
CVE-2025-26649
HIGH 7.0
Windows Secure Channel Elevation of Privilege Vulnerability |
|
CVE-2025-27492
HIGH 7.0
Windows Secure Channel Elevation of Privilege Vulnerability |
|
CVE-2025-27732
HIGH 7.0
Windows Graphics Component Elevation of Privilege Vulnerability |
|
CVE-2025-26637
HIGH 6.8
Windows BitLocker Security Feature Bypass Vulnerability |
|
CVE-2025-26681
HIGH 6.7
Win32k Elevation of Privilege Vulnerability |
|
CVE-2024-21302
HIGH 6.7
Windows Secure Kernel Mode Elevation of Privilege Vulnerability |
|
CVE-2025-26664
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-26667
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-27474
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-21197
HIGH 6.5
Windows NTFS Information Disclosure Vulnerability |
|
CVE-2025-21203
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-26635
HIGH 6.5
Windows Hello Security Feature Bypass Vulnerability |
|
CVE-2025-26651
HIGH 6.5
Windows Local Session Manager (LSM) Denial of Service Vulnerability |
|
CVE-2025-26672
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-26676
HIGH 6.5
Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability |
|
CVE-2025-27738
HIGH 6.5
Windows Resilient File System (ReFS) Information Disclosure Vulnerability |
|
CVE-2025-27735
HIGH 6.0
Windows Virtualization-Based Security (VBS) Security Feature Bypass Vulnerability |
|
CVE-2025-27471
HIGH 5.9
Microsoft Streaming Service Denial of Service Vulnerability |
|
CVE-2025-27742
HIGH 5.5
NTFS Information Disclosure Vulnerability |
|
CVE-2025-27736
HIGH 5.5
Windows Power Dependency Coordinator Information Disclosure Vulnerability |
Déployer ce correctif Windows sur votre flotte
Appaloosa pousse les mises à jour Windows et vérifie leur application sur tout votre parc.