Security Patch
The latest Security Patch coverage — news, analysis, and updates from the WindowsNews.AI desk.
CVE-2025-49685: Critical Windows Search Bug Lets Attackers Seize Admin Control—Patch Immediately
Microsoft has disclosed a critical elevation-of-privilege vulnerability in the Windows Search Service that hands local attackers a direct path to administrative control. Tracked as CVE-2025-49685,...
Microsoft Patches Improper Access Control Flaw in Windows Storage Driver That Exposes Sensitive Data
Microsoft has confirmed and patched a security vulnerability in the Windows Storage Port Driver that could allow attackers with local access to read sensitive information from a targeted system....
CVE-2025-49682: Microsoft Patches Windows Media Use-After-Free Flaw Allowing Local Privilege Escalation
Microsoft has patched an elevation-of-privilege vulnerability in Windows Media, tracked as CVE-2025-49682, that could let attackers with local access gain higher system permissions. The flaw,...
Critical Windows Shell Flaw CVE-2025-49679 Allows Local Privilege Escalation
A critical vulnerability in the Windows Shell, identified as CVE-2025-49679, has been disclosed, posing a significant security risk to users. This flaw, a numeric truncation error, can be exploited...
Critical Windows Kernel Streaming Flaw CVE-2025-49675 Enables Full System Takeover
A critical vulnerability has been identified in a core component of the Windows operating system, posing a significant security risk to users. The flaw, cataloged as CVE-2025-49675, affects the...
Critical NTFS Vulnerability (CVE-2025-49678) Exposes Windows Systems to Privilege Escalation
Critical NTFS Vulnerability (CVE-2025-49678) Exposes Windows Systems to Privilege Escalation A critical security flaw, identified as CVE-2025-49678, has been discovered in the Windows New Technology...
Critical Security Flaw in Windows RRAS Patched: Understanding CVE-2025-49668
Critical Security Flaw in Windows RRAS Patched: Understanding CVE-2025-49668 A critical vulnerability, identified as CVE-2025-49668, has been discovered and addressed in the Windows Routing and...
Critical Flaw in Windows RRAS: Unpacking the CVE-2025-49673 Vulnerability
Critical Flaw in Windows RRAS: Unpacking the CVE-2025-49673 Vulnerability A critical security vulnerability, identified as CVE-2025-49673, has been discovered in the Windows Routing and Remote Access...
Critical Windows Flaw: Understanding the CVE-2025-49665 Privilege Escalation Vulnerability
Critical Windows Flaw: Understanding the CVE-2025-49665 Privilege Escalation Vulnerability A critical security vulnerability, identified as CVE-2025-49665, has been discovered in the Windows...
Technical Details and Impact
A critical vulnerability has been identified in the Windows Event Tracing (ETW) subsystem, cataloged as CVE-2025-49660, which could allow for local privilege escalation. This flaw poses a significant...
Critical Information Disclosure Vulnerability in Windows (CVE-2025-49664) Prompts Urgent Patching
Critical Information Disclosure Vulnerability in Windows (CVE-2025-49664) Prompts Urgent Patching A medium-severity information disclosure vulnerability, identified as CVE-2025-49664, has been...
Critical Windows Flaw CVE-2025-48821 Exposes Systems to Privilege Escalation
Critical Windows Flaw CVE-2025-48821 Exposes Systems to Privilege Escalation A significant security vulnerability, identified as CVE-2025-48821, has been discovered in the Windows Universal Plug and...