Security News > 2025 > January > Microsoft fixes actively exploited Windows Hyper-V zero-day flaws

Microsoft has marked January 2025 Patch Tuesday with a hefty load of patches: 157 CVE-numbered security issues have been fixed in various products, three of which (in Hyper-V) are being actively exploited. The exploited Hyper-V vulnerabilities The exploited zero-days are CVE-2025-21333 (a buffer overflow bug), CVE-2025-21334 and CVE-2025-21335 (use after free flaws), and they all allow attackers to elevated their privilege to SYSTEM on compromised Windows and Windows Server machines. They affect a component of … More → The post Microsoft fixes actively exploited Windows Hyper-V zero-day flaws appeared first on Help Net Security.
News URL
Related news
- Microsoft adds another problem to the Windows 11 24H2 naughty list (source)
- Microsoft may have scrapped Windows 11's dynamic wallpapers feature (source)
- Microsoft to force install new Outlook on Windows 10 PCs in February (source)
- Microsoft 365 apps crash on Windows Server after Office update (source)
- Microsoft January 2025 Patch Tuesday fixes 8 zero-days, 159 flaws (source)
- Microsoft fixes under-attack privilege-escalation holes in Hyper-V (source)
- 3 Actively Exploited Zero-Day Flaws Patched in Microsoft's Latest Security Update (source)
- Microsoft ends support for Office apps on Windows 10 in October (source)
- Microsoft expands testing of Windows 11 admin protection feature (source)
- Microsoft starts force upgrading Windows 11 22H2, 23H3 devices (source)
Related Vulnerability
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-01-14 | CVE-2025-21335 | Unspecified vulnerability in Microsoft products Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability | 0.0 |
2025-01-14 | CVE-2025-21334 | Unspecified vulnerability in Microsoft products Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability | 0.0 |
2025-01-14 | CVE-2025-21333 | Unspecified vulnerability in Microsoft products Windows Hyper-V NT Kernel Integration VSP Elevation of Privilege Vulnerability | 0.0 |