Microsoft Windows Server 2025
cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*
A vulnerability allowing untrusted pointer dereference has been identified in the Windows Win32K component, specifically within ICOMP. This flaw enables an authorized attacker to locally elevate privileges. The vulnerability affects multiple versions of Windows 11, Windows Server 2025, and various ARM-based systems.
Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing an attacker to gain SYSTEM privileges.
Users can download the security update for this vulnerability via the Microsoft Update Catalog. Specific update details can be found in the Microsoft Knowledge Base articles KB5082063 for Windows Server 2025 and KB5083769 for Windows 11 versions 25H2 and 24H2. For Windows 11 version 26H1, the relevant KB is 5083768.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.