NT OS 内核信息泄露漏洞 CVE-2025-53136
crowdfense.com | 漏洞 | 中危 | CVE-2025-53136 | #information-disclosure | #race-condition | #kaslr | #cve-2025-53136 | #windows-kernel | #patch-analysis
摘要
Crowdfense 分析 CVE-2025-53136:微软修复 CVE-2024-43511 时引入的 Windows 内核地址泄露漏洞,RtlSidHashInitialize 中的竞态条件可泄露内核指针,用于绕过 KASLR 并与其他漏洞组合成完整利用链。
- CVSS
- 5.5
- 发布时间
- 收录时间
Skip to content