Microsoft Web Threat Defense Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in Web Threat Defense (WTD.sys), allowing an unauthorized attacker to cause a service disruption over the network. This issue arises from an out-of-bounds read, which can be exploited to create a significant impact on availability.

Impact

Exploitation of this vulnerability leads to a denial-of-service condition, causing a significant disruption of service over the network.

Remediation

Microsoft has released HotPatch KB5061258 for Windows 11 Version 24H2 (both x64 and ARM64-based Systems) to address this vulnerability. Customers should install this HotPatch update to be protected. For Windows 11 Version 22H2 and 23H2, the regular security update KB5058405 can be applied.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
7.4
remediation
7.7
relevance
0.0
threat
0.2
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.