CVE-2025-27479

Insufficient resource pool in Windows Kerberos allows an unauthorized attacker to deny service over a network.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*

History

08 Jul 2025, 19:13

Type Values Removed Values Added
References () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-27479 - () https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-27479 - Vendor Advisory
CPE cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2019:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:*
CWE CWE-410
CVSS v2 : unknown
v3 : 7.5
v2 : unknown
v3 : unknown
First Time Microsoft
Microsoft windows Server 2012
Microsoft windows Server 2016
Microsoft windows Server 2022 23h2
Microsoft windows Server 2019
Microsoft windows Server 2025
Microsoft windows Server 2022

08 Apr 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-08 18:15

Updated : 2025-07-08 19:13


NVD link : CVE-2025-27479

Mitre link : CVE-2025-27479


JSON object : View

Products Affected

microsoft

  • windows_server_2022_23h2
  • windows_server_2022
  • windows_server_2025
  • windows_server_2016
  • windows_server_2012
  • windows_server_2019
CWE

No CWE.