Microsoft Windows RRAS Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in the Windows Routing and Remote Access Service (RRAS). This issue arises from improper link resolution before file access, allowing an authorized attacker to disrupt services locally. The vulnerability affects multiple Windows versions, including Windows Server 2012 R2, Windows Server 2016, various Windows 10 versions, Windows Server 2022, and Windows 11.

Impact

Exploitation of this vulnerability leads to a local denial-of-service condition, causing affected systems to become unresponsive or unavailable.

Remediation

Users can apply the security update for this vulnerability, which is available through the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles linked in the 'Security Update Guide'.

Added: Nov 11, 2025, 7:33 PM
Updated: Nov 11, 2025, 7:33 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.9
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.