CVE-2025-49735CriticalCVSS 8.1
Windows KDC Proxy Service (KPSSVC) Remote Code Execution Vulnerability
🔗 CVE IDs covered (1)
📋 Description
Use after free in Windows KDC Proxy Service (KPSSVC) allows an unauthorized attacker to execute code over a network.
🎯 Affected products13
- Windows Server 2012
- Windows Server 2012 (Server Core installation)
- Windows Server 2012 R2
- Windows Server 2012 R2 (Server Core installation)
- Windows Server 2016
- Windows Server 2016 (Server Core installation)
- Windows Server 2019
- Windows Server 2019 (Server Core installation)
- Windows Server 2022
- Windows Server 2022 (Server Core installation)
- Windows Server 2022, 23H2 Edition (Server Core installation)
- Windows Server 2025
- Windows Server 2025 (Server Core installation)
✅ Remediation
KB5060531 (Security Update) — fixed build 10.0.17763.7434 KB5060526 (Security Update) — fixed build 10.0.20348.3807 KB5060842 (Security Update) — fixed build 10.0.26200.4349 KB5060118 (Security Update) — fixed build 10.0.25398.1665 KB5061010 (Security Update) — fixed build 10.0.14393.8148 KB5061059 (Monthly Rollup) — fixed build 6.2.9200.25522 KB5061018 (Monthly Rollup) — fixed build 6.3.9600.22620
🔗 References (15)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-49735
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5060531
- referencehttps://support.microsoft.com/help/5060531
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5060526
- referencehttps://support.microsoft.com/help/5060526
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5060842
- referencehttps://support.microsoft.com/help/5060842
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5060118
- referencehttps://support.microsoft.com/help/5060118
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5061010
- referencehttps://support.microsoft.com/help/5061010
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5061059
- referencehttps://support.microsoft.com/help/5061059
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5061018
- referencehttps://support.microsoft.com/help/5061018