AETERNAE AI RESEARCH LLC INDEPENDENT RESEARCH
ÆAETERNAERESEARCH
Sign inRequest access
← CVE index
Δ / VULNERABILITY RECORD

CVE-2025-53805.

Source-reported disclosure and enrichment record.

SEVERITY / CVSSHIGH / 7.5No severity score in this snapshot.
EXPLOITATION STATUSNot listed in the cached KEV catalogThis does not establish absence of exploitation.
RECORD STATUSMicrosoft vendor recordModified Sep 09, 2025

Disclosure summary

Out-of-bounds read in Windows Internet Information Services allows an unauthorized attacker to deny service over a network.

Source-reported weakness categories

CWE-125

Source-specific records & product guidance

Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.

Microsoft Security Updates (CVRF) · 2025-Sep

Open original source · Updated Sep 09, 2025

HTTP.sys Denial of Service Vulnerability

Maximum of vendor-reported product scores; products and fixed builds are associations, not a universal affected-version statement.

Microsoft maximum product score: 7.5

VendorProduct / associationVersion / bounds
Microsoft update guideWindows Server 2022 (MSRC status code 3)
Microsoft update guideWindows Server 2022 (Server Core installation) (MSRC status code 3)
Microsoft update guideWindows 11 Version 22H2 for ARM64-based Systems (MSRC status code 3)
Microsoft update guideWindows 11 Version 22H2 for x64-based Systems (MSRC status code 3)
Microsoft update guideWindows Server 2025 (Server Core installation) (MSRC status code 3)
Microsoft update guideWindows 11 Version 23H2 for ARM64-based Systems (MSRC status code 3)
Microsoft update guideWindows 11 Version 23H2 for x64-based Systems (MSRC status code 3)
Microsoft update guideWindows Server 2022, 23H2 Edition (Server Core installation) (MSRC status code 3)
Microsoft update guideWindows 11 Version 24H2 for ARM64-based Systems (MSRC status code 3)
Microsoft update guideWindows 11 Version 24H2 for x64-based Systems (MSRC status code 3)
Microsoft update guideWindows Server 2025 (MSRC status code 3)

Vendor remediation references

  • 5065432 · build 10.0.20348.4171 · product IDs 11923, 11924
  • Vendor guidance · product IDs 11923, 11924
  • 5065432 · product IDs 11923, 11924
  • 5065306 · build 10.0.20348.4106 · product IDs 11923, 11924
  • Vendor guidance · product IDs 11923, 11924
  • 5065306 · product IDs 11923, 11924
  • 5065431 · build 10.0.22621.5909 · product IDs 12085, 12086
  • Vendor guidance · product IDs 12085, 12086
  • 5065431 · product IDs 12085, 12086, 12242, 12243
  • 5065426 · build 10.0.26100.6584 · product IDs 12437, 12389, 12390, 12436
  • Vendor guidance · product IDs 12437, 12389, 12390, 12436
  • 5065426 · product IDs 12437, 12389, 12390, 12436
  • 5065474 · build 10.0.26100.6508 · product IDs 12437, 12390, 12436
  • Vendor guidance · product IDs 12437, 12390, 12436
  • 5065474 · product IDs 12437, 12389, 12390, 12436
  • 5065431 · build 10.0.22631.5909 · product IDs 12242, 12243
  • Vendor guidance · product IDs 12242, 12243
  • 5065425 · build 10.0.25398.1849 · product IDs 12244
  • Vendor guidance · product IDs 12244
  • 5065474 · build 10.0.26100.6508 · product IDs 12389
  • Vendor guidance · product IDs 12389

Original records & references

PUBLISHED 2025-09-09T03:00:00-04:00
MODIFIED 2025-09-09T03:00:00-04:00
INGESTED 2026-10-08T12:45:42-04:00