CVE-2025-49735CriticalCVSS 8.1

Windows KDC Proxy Service (KPSSVC) Remote Code Execution Vulnerability

Published
July 8, 2025
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

Use after free in Windows KDC Proxy Service (KPSSVC) allows an unauthorized attacker to execute code over a network.

🎯 Affected products13

  • Windows Server 2012
  • Windows Server 2012 (Server Core installation)
  • Windows Server 2012 R2
  • Windows Server 2012 R2 (Server Core installation)
  • Windows Server 2016
  • Windows Server 2016 (Server Core installation)
  • Windows Server 2019
  • Windows Server 2019 (Server Core installation)
  • Windows Server 2022
  • Windows Server 2022 (Server Core installation)
  • Windows Server 2022, 23H2 Edition (Server Core installation)
  • Windows Server 2025
  • Windows Server 2025 (Server Core installation)

✅ Remediation

KB5060531 (Security Update) — fixed build 10.0.17763.7434 KB5060526 (Security Update) — fixed build 10.0.20348.3807 KB5060842 (Security Update) — fixed build 10.0.26200.4349 KB5060118 (Security Update) — fixed build 10.0.25398.1665 KB5061010 (Security Update) — fixed build 10.0.14393.8148 KB5061059 (Monthly Rollup) — fixed build 6.2.9200.25522 KB5061018 (Monthly Rollup) — fixed build 6.3.9600.22620

🔗 References (15)