CVE-2025-50175
7.8Microsoft · Windows
A use after free vulnerability in Windows Digital Media allows an authenticated local attacker to achieve privilege escalation on affected systems.
Executive summary
A use after free vulnerability in Microsoft Windows Digital Media allows an authenticated attacker to elevate privileges to the system level.
Vulnerability
The flaw is a use after free (CWE-416) within the Windows Digital Media component. An attacker must already have local access and low-level privileges to trigger the vulnerability and execute arbitrary code with elevated permissions.
Business impact
Successful exploitation of this vulnerability permits a local user to gain unauthorized administrative access to the host machine. Given the CVSS score of 7.8, this represents a high-severity risk to system integrity and confidentiality, as it facilitates full control over compromised workstations or servers.
Remediation
Immediate Action: Apply the relevant monthly security updates provided by Microsoft for the affected Windows versions as documented in the Microsoft Security Update Guide.
Proactive Monitoring: Monitor system logs for unusual process execution patterns or unexpected privilege changes associated with media processing components.
Compensating Controls: Restrict local user access and apply the principle of least privilege to minimize the number of accounts capable of executing the code required to trigger this vulnerability.
Exploitation status
Public Exploit Available: No.
Analyst recommendation
Organizations should prioritize the deployment of the latest Microsoft security patches to all affected Windows endpoints. Because this vulnerability allows for privilege escalation, it is imperative to patch promptly to prevent local attackers from gaining full system control.
More Microsoft CVEs all →
History
- Disclosed CVE record published
- Published in the daily brief high section
- Published in the daily brief high section
- Analyst report written
- Fix documented version 10.0.17763.7919 per CVE record
Sources
- Windows Digital Media Elevation of Privilege Vulnerability Vendor advisory