fromZero Day Initiative
18 hours agoZero Day Initiative - The July 2025 Security Update Review
The first Critical-rated bug in Hyper-V could allow an attacker to execute code on the local system if they can be tricked into importing an INF file. The vulnerability in the Windows KDC Proxy Service allows code execution if an attacker can leverage a vulnerability in Kerberos Key Distribution Center Proxy Service. Although it is a tempting target, exploiting this is a challenging task for attackers. A Critical-rated info disclosure bug in the Imaging Component leaks ream heap memory, raising questions about its Critical classification.
Information security