13.5 C
New York
Monday, October 13, 2025

Microsoft September 2025 Patch Tuesday fixes 81 flaws, two zero-days


Tag

CVE ID

CVE Title

Severity


Azure – Networking

CVE-2025-54914

Azure Networking Elevation of Privilege Vulnerability

Essential


Azure Arc

CVE-2025-55316

Azure Arc Elevation of Privilege Vulnerability

Essential


Azure Bot Service

CVE-2025-55244

Azure Bot Service Elevation of Privilege Vulnerability

Essential


Azure Entra

CVE-2025-55241

Azure Entra Elevation of Privilege Vulnerability

Essential


Azure Home windows Digital Machine Agent

CVE-2025-49692

Azure Linked Machine Agent Elevation of Privilege Vulnerability

Essential


Functionality Entry Administration Service (camsvc)

CVE-2025-54108

Functionality Entry Administration Service (camsvc) Elevation of Privilege Vulnerability

Essential


Dynamics 365 FastTrack Implementation Property

CVE-2025-55238

Dynamics 365 FastTrack Implementation Property Data Disclosure Vulnerability

Essential


Graphics Kernel

CVE-2025-55236

Graphics Kernel Distant Code Execution Vulnerability

Essential


Graphics Kernel

CVE-2025-55223

DirectX Graphics Kernel Elevation of Privilege Vulnerability

Essential


Graphics Kernel

CVE-2025-55226

Graphics Kernel Distant Code Execution Vulnerability

Essential


Microsoft AutoUpdate (MAU)

CVE-2025-55317

Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability

Essential


Microsoft Brokering File System

CVE-2025-54105

Microsoft Brokering File System Elevation of Privilege Vulnerability

Essential


Microsoft Edge (Chromium-based)

CVE-2025-9866

Chromium: CVE-2025-9866 Inappropriate implementation in Extensions

Unknown


Microsoft Edge (Chromium-based)

CVE-2025-9867

Chromium: CVE-2025-9867 Inappropriate implementation in Downloads

Unknown


Microsoft Edge (Chromium-based)

CVE-2025-53791

Microsoft Edge (Chromium-based) Safety Characteristic Bypass Vulnerability

Average


Microsoft Edge (Chromium-based)

CVE-2025-9864

Chromium: CVE-2025-9864 Use after free in V8

Unknown


Microsoft Edge (Chromium-based)

CVE-2025-9865

Chromium: CVE-2025-9865 Inappropriate implementation in Toolbar

Unknown


Microsoft Graphics Part

CVE-2025-53807

Home windows Graphics Part Elevation of Privilege Vulnerability

Essential


Microsoft Graphics Part

CVE-2025-53800

Home windows Graphics Part Elevation of Privilege Vulnerability

Essential


Microsoft Excessive Efficiency Compute Pack (HPC)

CVE-2025-55232

Microsoft Excessive Efficiency Compute (HPC) Pack Distant Code Execution Vulnerability

Essential


Microsoft Workplace

CVE-2025-54910

Microsoft Workplace Distant Code Execution Vulnerability

Essential


Microsoft Workplace

CVE-2025-55243

Microsoft OfficePlus Spoofing Vulnerability

Essential


Microsoft Workplace

CVE-2025-54906

Microsoft Workplace Distant Code Execution Vulnerability

Essential


Microsoft Workplace Excel

CVE-2025-54902

Microsoft Excel Distant Code Execution Vulnerability

Essential


Microsoft Workplace Excel

CVE-2025-54899

Microsoft Excel Distant Code Execution Vulnerability

Essential


Microsoft Workplace Excel

CVE-2025-54904

Microsoft Excel Distant Code Execution Vulnerability

Essential


Microsoft Workplace Excel

CVE-2025-54903

Microsoft Excel Distant Code Execution Vulnerability

Essential


Microsoft Workplace Excel

CVE-2025-54898

Microsoft Excel Distant Code Execution Vulnerability

Essential


Microsoft Workplace Excel

CVE-2025-54896

Microsoft Excel Distant Code Execution Vulnerability

Essential


Microsoft Workplace Excel

CVE-2025-54900

Microsoft Excel Distant Code Execution Vulnerability

Essential


Microsoft Workplace Excel

CVE-2025-54901

Microsoft Excel Data Disclosure Vulnerability

Essential


Microsoft Workplace PowerPoint

CVE-2025-54908

Microsoft PowerPoint Distant Code Execution Vulnerability

Essential


Microsoft Workplace SharePoint

CVE-2025-54897

Microsoft SharePoint Distant Code Execution Vulnerability

Essential


Microsoft Workplace Visio

CVE-2025-54907

Microsoft Workplace Visio Distant Code Execution Vulnerability

Essential


Microsoft Workplace Phrase

CVE-2025-54905

Microsoft Phrase Data Disclosure Vulnerability

Essential


Microsoft Digital Exhausting Drive

CVE-2025-54112

Microsoft Digital Exhausting Disk Elevation of Privilege Vulnerability

Essential


Position: Home windows Hyper-V

CVE-2025-54092

Home windows Hyper-V Elevation of Privilege Vulnerability

Essential


Position: Home windows Hyper-V

CVE-2025-54091

Home windows Hyper-V Elevation of Privilege Vulnerability

Essential


Position: Home windows Hyper-V

CVE-2025-54115

Home windows Hyper-V Elevation of Privilege Vulnerability

Essential


Position: Home windows Hyper-V

CVE-2025-54098

Home windows Hyper-V Elevation of Privilege Vulnerability

Essential


SQL Server

CVE-2025-47997

Microsoft SQL Server Data Disclosure Vulnerability

Essential


SQL Server

CVE-2025-55227

Microsoft SQL Server Elevation of Privilege Vulnerability

Essential


SQL Server

CVE-2024-21907

VulnCheck: CVE-2024-21907 Improper Dealing with of Distinctive Situations in Newtonsoft.Json

Unknown


Home windows Ancillary Operate Driver for WinSock

CVE-2025-54099

Home windows Ancillary Operate Driver for WinSock Elevation of Privilege Vulnerability

Essential


Home windows BitLocker

CVE-2025-54911

Home windows BitLocker Elevation of Privilege Vulnerability

Essential


Home windows BitLocker

CVE-2025-54912

Home windows BitLocker Elevation of Privilege Vulnerability

Essential


Home windows Bluetooth Service

CVE-2025-53802

Home windows Bluetooth Service Elevation of Privilege Vulnerability

Essential


Home windows Linked Units Platform Service

CVE-2025-54102

Home windows Linked Units Platform Service Elevation of Privilege Vulnerability

Essential


Home windows Linked Units Platform Service

CVE-2025-54114

Home windows Linked Units Platform Service (Cdpsvc) Denial of Service Vulnerability

Essential


Home windows Defender Firewall Service

CVE-2025-53810

Home windows Defender Firewall Service Elevation of Privilege Vulnerability

Essential


Home windows Defender Firewall Service

CVE-2025-53808

Home windows Defender Firewall Service Elevation of Privilege Vulnerability

Essential


Home windows Defender Firewall Service

CVE-2025-54094

Home windows Defender Firewall Service Elevation of Privilege Vulnerability

Essential


Home windows Defender Firewall Service

CVE-2025-54915

Home windows Defender Firewall Service Elevation of Privilege Vulnerability

Essential


Home windows Defender Firewall Service

CVE-2025-54109

Home windows Defender Firewall Service Elevation of Privilege Vulnerability

Essential


Home windows Defender Firewall Service

CVE-2025-54104

Home windows Defender Firewall Service Elevation of Privilege Vulnerability

Essential


Home windows DWM

CVE-2025-53801

Microsoft DWM Core Library Elevation of Privilege Vulnerability

Essential


Home windows Imaging Part

CVE-2025-53799

Home windows Imaging Part Data Disclosure Vulnerability

Essential


Home windows Web Data Providers

CVE-2025-53805

HTTP.sys Denial of Service Vulnerability

Essential


Home windows Kernel

CVE-2025-53803

Home windows Kernel Reminiscence Data Disclosure Vulnerability

Essential


Home windows Kernel

CVE-2025-53804

Home windows Kernel-Mode Driver Data Disclosure Vulnerability

Essential


Home windows Kernel

CVE-2025-54110

Home windows Kernel Elevation of Privilege Vulnerability

Essential


Home windows Native Safety Authority Subsystem Service (LSASS)

CVE-2025-54894

Native Safety Authority Subsystem Service Elevation of Privilege Vulnerability

Essential


Home windows Native Safety Authority Subsystem Service (LSASS)

CVE-2025-53809

Native Safety Authority Subsystem Service (LSASS) Denial of Service Vulnerability

Essential


Home windows Administration Providers

CVE-2025-54103

Home windows Administration Service Elevation of Privilege Vulnerability

Essential


Home windows MapUrlToZone

CVE-2025-54107

MapUrlToZone Safety Characteristic Bypass Vulnerability

Essential


Home windows MapUrlToZone

CVE-2025-54917

MapUrlToZone Safety Characteristic Bypass Vulnerability

Essential


Home windows MultiPoint Providers

CVE-2025-54116

Home windows MultiPoint Providers Elevation of Privilege Vulnerability

Essential


Home windows NTFS

CVE-2025-54916

Home windows NTFS Distant Code Execution Vulnerability

Essential


Home windows NTLM

CVE-2025-54918

Home windows NTLM Elevation of Privilege Vulnerability

Essential


Home windows PowerShell

CVE-2025-49734

PowerShell Direct Elevation of Privilege Vulnerability

Essential


Home windows Routing and Distant Entry Service (RRAS)

CVE-2025-54095

Home windows Routing and Distant Entry Service (RRAS) Data Disclosure Vulnerability

Essential


Home windows Routing and Distant Entry Service (RRAS)

CVE-2025-54096

Home windows Routing and Distant Entry Service (RRAS) Data Disclosure Vulnerability

Essential


Home windows Routing and Distant Entry Service (RRAS)

CVE-2025-53797

Home windows Routing and Distant Entry Service (RRAS) Data Disclosure Vulnerability

Essential


Home windows Routing and Distant Entry Service (RRAS)

CVE-2025-53796

Home windows Routing and Distant Entry Service (RRAS) Data Disclosure Vulnerability

Essential


Home windows Routing and Distant Entry Service (RRAS)

CVE-2025-54106

Home windows Routing and Distant Entry Service (RRAS) Distant Code Execution Vulnerability

Essential


Home windows Routing and Distant Entry Service (RRAS)

CVE-2025-54097

Home windows Routing and Distant Entry Service (RRAS) Data Disclosure Vulnerability

Essential


Home windows Routing and Distant Entry Service (RRAS)

CVE-2025-53798

Home windows Routing and Distant Entry Service (RRAS) Data Disclosure Vulnerability

Essential


Home windows Routing and Distant Entry Service (RRAS)

CVE-2025-54113

Home windows Routing and Distant Entry Service (RRAS) Distant Code Execution Vulnerability

Essential


Home windows Routing and Distant Entry Service (RRAS)

CVE-2025-55225

Home windows Routing and Distant Entry Service (RRAS) Data Disclosure Vulnerability

Essential


Home windows Routing and Distant Entry Service (RRAS)

CVE-2025-53806

Home windows Routing and Distant Entry Service (RRAS) Data Disclosure Vulnerability

Essential


Home windows SMB

CVE-2025-55234

Home windows SMB Elevation of Privilege Vulnerability

Essential


Home windows SMBv3 Consumer

CVE-2025-54101

Home windows SMB Consumer Distant Code Execution Vulnerability

Essential


Home windows SPNEGO Prolonged Negotiation

CVE-2025-54895

SPNEGO Prolonged Negotiation (NEGOEX) Safety Mechanism Elevation of Privilege Vulnerability

Essential


Home windows TCP/IP

CVE-2025-54093

Home windows TCP/IP Driver Elevation of Privilege Vulnerability

Essential


Home windows UI XAML Maps MapControlSettings

CVE-2025-54913

Home windows UI XAML Maps MapControlSettings Elevation of Privilege Vulnerability

Essential


Home windows UI XAML Telephone DatePickerFlyout

CVE-2025-54111

Home windows UI XAML Telephone DatePickerFlyout Elevation of Privilege Vulnerability

Essential


Home windows Win32K – GRFX

CVE-2025-55224

Home windows Hyper-V Distant Code Execution Vulnerability

Essential


Home windows Win32K – GRFX

CVE-2025-55228

Home windows Graphics Part Distant Code Execution Vulnerability

Essential


Home windows Win32K – GRFX

CVE-2025-54919

Home windows Graphics Part Distant Code Execution Vulnerability

Essential


Xbox

CVE-2025-55242

Xbox Certification Bug Copilot Djando Data Disclosure Vulnerability

Essential


XBox Gaming Providers

CVE-2025-55245

Xbox Gaming Providers Elevation of Privilege Vulnerability

Essential


Related Articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Latest Articles