H
eap-based buffer overflow in Windows OLE allows an unauthorized attacker to execute code locally.
References
| Link | Resource |
|---|---|
| https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-60714 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
17 Nov 2025, 17:43
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-60714 - Vendor Advisory | |
| CPE | cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x64:* cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:* cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:* cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x64:* cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:* cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:x86:* cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:x86:* |
|
| First Time |
Microsoft windows 10 1809
Microsoft Microsoft windows Server 2022 23h2 Microsoft windows Server 2019 Microsoft windows 10 22h2 Microsoft windows Server 2008 Microsoft windows 11 23h2 Microsoft windows 10 21h2 Microsoft windows 10 1607 Microsoft windows Server 2016 Microsoft windows Server 2022 Microsoft windows Server 2012 |
11 Nov 2025, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-11 18:15
Updated : 2025-11-17 17:43
NVD link : CVE-2025-60714
Mitre link : CVE-2025-60714
CVE.ORG link : CVE-2025-60714
JSON object : View
Products Affected
CWE
CWE-122
Heap-based Buffer Overflow