Project Subscriptions
| Vendors | Products |
|---|---|
|
Microsoft
Subscribe
|
Windows
Subscribe
Windows 10
Subscribe
Windows 10 21h2
Subscribe
Windows 10 21h2
Subscribe
Windows 10 22h2
Subscribe
Windows 10 22h2
Subscribe
Windows 11
Subscribe
Windows 11 22h2
Subscribe
Windows 11 22h2
Subscribe
Windows 11 23h2
Subscribe
Windows 11 23h2
Subscribe
Windows 11 24h2
Subscribe
Windows 11 24h2
Subscribe
Windows Bluetooth Service
Subscribe
Windows Server
Subscribe
Windows Server 2022
Subscribe
Windows Server 2022 23h2
Subscribe
Windows Server 2025
Subscribe
Windows Server 23h2
Subscribe
|
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-30223 | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 19 Nov 2025 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft windows 10 21h2
Microsoft windows 10 22h2 Microsoft windows 11 22h2 Microsoft windows 11 23h2 Microsoft windows 11 24h2 Microsoft windows Server 23h2 |
|
| CPEs | cpe:2.3:o:microsoft:windows_10_21H2:*:*:*:*:*:*:x86:* cpe:2.3:o:microsoft:windows_10_22H2:*:*:*:*:*:*:x64:* cpe:2.3:o:microsoft:windows_11_22H2:*:*:*:*:*:*:arm64:* cpe:2.3:o:microsoft:windows_11_23H2:*:*:*:*:*:*:arm64:* cpe:2.3:o:microsoft:windows_11_23H2:*:*:*:*:*:*:x64:* cpe:2.3:o:microsoft:windows_11_24H2:*:*:*:*:*:*:arm64:* cpe:2.3:o:microsoft:windows_server_23h2:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Microsoft windows 10 21h2
Microsoft windows 10 22h2 Microsoft windows 11 22h2 Microsoft windows 11 23h2 Microsoft windows 11 24h2 Microsoft windows Server 23h2 |
Thu, 25 Sep 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft windows 10 21h2
Microsoft windows 10 22h2 Microsoft windows 11 22h2 Microsoft windows 11 23h2 Microsoft windows 11 24h2 Microsoft windows Server 2022 23h2 |
|
| CPEs | cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_22h2:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_11_23h2:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_11_24h2:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2022_23h2:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2025:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Microsoft windows 10 21h2
Microsoft windows 10 22h2 Microsoft windows 11 22h2 Microsoft windows 11 23h2 Microsoft windows 11 24h2 Microsoft windows Server 2022 23h2 |
Fri, 19 Sep 2025 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 19 Sep 2025 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Microsoft
Microsoft windows Microsoft windows 10 Microsoft windows 11 Microsoft windows Bluetooth Service Microsoft windows Server Microsoft windows Server 2022 Microsoft windows Server 2025 |
|
| Vendors & Products |
Microsoft
Microsoft windows Microsoft windows 10 Microsoft windows 11 Microsoft windows Bluetooth Service Microsoft windows Server Microsoft windows Server 2022 Microsoft windows Server 2025 |
Thu, 18 Sep 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Bluetooth Service allows an authorized attacker to elevate privileges locally. | |
| Title | Windows Bluetooth Service Elevation of Privilege Vulnerability | |
| Weaknesses | CWE-362 CWE-416 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2026-02-20T16:01:13.486Z
Reserved: 2025-09-11T00:32:30.949Z
Link: CVE-2025-59220
Updated: 2025-09-19T12:03:03.885Z
Status : Analyzed
Published: 2025-09-18T22:15:50.037
Modified: 2025-09-25T15:53:26.307
Link: CVE-2025-59220
No data.
OpenCVE Enrichment
Updated: 2025-09-19T09:35:18Z
EUVD