Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2025-59513: Windows Bluetooth RFCOM Protocol Driver Information Disclosure Vulnerability

According to the CVSS metrics, successful exploitation of this vulnerability could lead to a high loss of confidentiality (C:H), no effect on integrity (I:N) and some loss of availability (A:L). What does that mean for this vulnerability?

An attacker who successfully exploited this use after free vulnerability could view sensitive, previously freed memory heap information (Confidentiality) since the impacted component might be divulged to the attacker.

While the attacker cannot make changes to disclosed information (Integrity), they might be able to force a crash within the function (Availability).

Microsoft Security Response Center
#vulnerability#windows#Windows Bluetooth RFCOM Protocol Driver#Security Vulnerability

Microsoft Security Response Center: Latest News

CVE-2025-49752: Azure Bastion Elevation of Privilege Vulnerability