FREE TRIAL
Patch Tuesday

Microsoft Patch Tuesday – August 2025

7 min. read
12/08/2025
By Esben Dochy
Microsoft Patch Tuesday

⚡ TL;DR | Go Straight to the August 202Patch Tuesday Audit Report

Patch Tuesday is once again upon us. As always, our team has put together the monthly Patch Tuesday Report to help you manage your update progress. The audit report gives you a quick and clear overview of your Windows machines and their patching status. The August 2025 edition of Patch Tuesday brings us 107 new fixes, with 13 rated as critical. We’ve listed the most important changes below.

Windows NTLM Elevation of Privilege Vulnerability

CVE-2025-53778 is arguable the most critical vulnerability this month as we are lucky that there are no exploited vulnerabilities this time. This NTLM EoP vulnerability has a CVSS base score of 8.8 and Microsoft does list it has being “more likely” to be exploited.

If successfully exploited an attacker could gain SYSTEM privileges. Microsoft has not provided additional details as usual to prevent exploitation.

MSMQ Remote Code Execution Vulnerability

The second critical vulnerability this month that is more likely to be exploited is CVE-2025-50177. This RCE has a CVSS base score of 8.1. Exploitation of this vulnerability requires an attacker to send a series of specially crafted MSMQ packets in a rapid sequence over HTTP to a MSMQ server.

This means that only MSMQ servers are vulnerable, you can easily get an overview of your MSMQ servers by running our MSMQ Server Audit.

Microsoft Office Remote Code Execution

There are a total of three RCE vulnerabilities that got fixed in Office this month, CVE-2025-53740, CVE-2025-53732, and CVE-2025-53731. While Microsoft does list them as less likely to be exploited, since the attacker or victim needs to execute code from the local machine to exploit the vulnerability. CVSS scores range between 8.4 and 7.8.

Run the Patch Tuesday August 2025 Audit

To help manage your update progress, we’ve created the Patch Tuesday Audit that checks if the assets in your network are on the latest patch updates. The report has been color-coded to see which machines are up-to-date and which ones still need to be updated. As always, system administrators are urged to update their environment as soon as possible to ensure all endpoints are secured.

The Lansweeper Patch Tuesday report is automatically added to your Lansweeper Site. Lansweeper Sites is included in all our licenses without any additional cost and allows you to federate all your installations into one single view so all you need to do is look at one report, automatically added every patch Tuesday!

Patch Tuesday August 2025 CVE Codes & Titles

CVE NumberCVE Title
CVE-2025-53793Azure Stack Hub Information Disclosure Vulnerability
CVE-2025-53789Windows StateRepository API Server file Elevation of Privilege Vulnerability
CVE-2025-53788Windows Subsystem for Linux (WSL2) Kernel Elevation of Privilege Vulnerability
CVE-2025-53786Microsoft Exchange Server Hybrid Deployment Elevation of Privilege Vulnerability
CVE-2025-53784Microsoft Word Remote Code Execution Vulnerability
CVE-2025-53783Microsoft Teams Remote Code Execution Vulnerability
CVE-2025-53781Azure Virtual Machines Information Disclosure Vulnerability
CVE-2025-53779Windows Kerberos Elevation of Privilege Vulnerability
CVE-2025-53778Windows NTLM Elevation of Privilege Vulnerability
CVE-2025-53773GitHub Copilot and Visual Studio Remote Code Execution Vulnerability
CVE-2025-53772Web Deploy Remote Code Execution Vulnerability
CVE-2025-53769Windows Security App Spoofing Vulnerability
CVE-2025-53766GDI+ Remote Code Execution Vulnerability
CVE-2025-53765Azure Stack Hub Information Disclosure Vulnerability
CVE-2025-53761Microsoft PowerPoint Remote Code Execution Vulnerability
CVE-2025-53760Microsoft SharePoint Elevation of Privilege Vulnerability
CVE-2025-53759Microsoft Excel Remote Code Execution Vulnerability
CVE-2025-53741Microsoft Excel Remote Code Execution Vulnerability
CVE-2025-53740Microsoft Office Remote Code Execution Vulnerability
CVE-2025-53739Microsoft Excel Remote Code Execution Vulnerability
CVE-2025-53738Microsoft Word Remote Code Execution Vulnerability
CVE-2025-53737Microsoft Excel Remote Code Execution Vulnerability
CVE-2025-53736Microsoft Word Information Disclosure Vulnerability
CVE-2025-53735Microsoft Excel Remote Code Execution Vulnerability
CVE-2025-53734Microsoft Office Visio Remote Code Execution Vulnerability
CVE-2025-53733Microsoft Word Remote Code Execution Vulnerability
CVE-2025-53732Microsoft Office Remote Code Execution Vulnerability
CVE-2025-53731Microsoft Office Remote Code Execution Vulnerability
CVE-2025-53730Microsoft Office Visio Remote Code Execution Vulnerability
CVE-2025-53729Microsoft Azure File Sync Elevation of Privilege Vulnerability
CVE-2025-53728Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability
CVE-2025-53727Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-53726Windows Push Notifications Apps Elevation of Privilege Vulnerability
CVE-2025-53725Windows Push Notifications Apps Elevation of Privilege Vulnerability
CVE-2025-53724Windows Push Notifications Apps Elevation of Privilege Vulnerability
CVE-2025-53723Windows Hyper-V Elevation of Privilege Vulnerability
CVE-2025-53722Windows Remote Desktop Services Denial of Service Vulnerability
CVE-2025-53721Windows Connected Devices Platform Service Elevation of Privilege Vulnerability
CVE-2025-53720Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-53719Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVE-2025-53718Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-53716Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability
CVE-2025-53156Windows Storage Port Driver Information Disclosure Vulnerability
CVE-2025-53155Windows Hyper-V Elevation of Privilege Vulnerability
CVE-2025-53154Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-53153Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVE-2025-53152Desktop Windows Manager Remote Code Execution Vulnerability
CVE-2025-53151Windows Kernel Elevation of Privilege Vulnerability
CVE-2025-53149Kernel Streaming WOW Thunk Service Driver Elevation of Privilege Vulnerability
CVE-2025-53148Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVE-2025-53147Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-53145Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2025-53144Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2025-53143Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2025-53142Microsoft Brokering File System Elevation of Privilege Vulnerability
CVE-2025-53141Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-53140Windows Kernel Transaction Manager Elevation of Privilege Vulnerability
CVE-2025-53138Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVE-2025-53137Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-53136NT OS Kernel Information Disclosure Vulnerability
CVE-2025-53135DirectX Graphics Kernel Elevation of Privilege Vulnerability
CVE-2025-53134Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-53133Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
CVE-2025-53132Win32k Elevation of Privilege Vulnerability
CVE-2025-53131Windows Media Remote Code Execution Vulnerability
CVE-2025-50177Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
CVE-2025-50176DirectX Graphics Kernel Remote Code Execution Vulnerability
CVE-2025-50173Windows Installer Elevation of Privilege Vulnerability
CVE-2025-50172DirectX Graphics Kernel Denial of Service Vulnerability
CVE-2025-50171Remote Desktop Spoofing Vulnerability
CVE-2025-50170Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
CVE-2025-50169Windows SMB Remote Code Execution Vulnerability
CVE-2025-50168Win32k Elevation of Privilege Vulnerability
CVE-2025-50167Windows Hyper-V Elevation of Privilege Vulnerability
CVE-2025-50166Windows Distributed Transaction Coordinator (MSDTC) Information Disclosure Vulnerability
CVE-2025-50165Windows Graphics Component Remote Code Execution Vulnerability
CVE-2025-50164Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-50163Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-50162Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-50161Win32k Elevation of Privilege Vulnerability
CVE-2025-50160Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-50159Remote Access Point-to-Point Protocol (PPP) EAP-TLS Elevation of Privilege Vulnerability
CVE-2025-50158Windows NTFS Information Disclosure Vulnerability
CVE-2025-50157Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVE-2025-50156Windows Routing and Remote Access Service (RRAS) Information Disclosure Vulnerability
CVE-2025-50155Windows Push Notifications Apps Elevation of Privilege Vulnerability
CVE-2025-50154Microsoft Windows File Explorer Spoofing Vulnerability
CVE-2025-50153Desktop Windows Manager Elevation of Privilege Vulnerability
CVE-2025-49762Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability
CVE-2025-49761Windows Kernel Elevation of Privilege Vulnerability
CVE-2025-49759Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-49758Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-49757Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2025-49755Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVE-2025-49751Windows Hyper-V Denial of Service Vulnerability
CVE-2025-49745Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2025-49743Windows Graphics Component Elevation of Privilege Vulnerability
CVE-2025-49736Microsoft Edge (Chromium-based) for Android Spoofing Vulnerability
CVE-2025-49712Microsoft SharePoint Remote Code Execution Vulnerability
CVE-2025-49707Azure Virtual Machines Spoofing Vulnerability
CVE-2025-48807Windows Hyper-V Remote Code Execution Vulnerability
CVE-2025-47954Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2025-33051Microsoft Exchange Server Information Disclosure Vulnerability
CVE-2025-25007Microsoft Exchange Server Spoofing Vulnerability
CVE-2025-25006Microsoft Exchange Server Spoofing Vulnerability
CVE-2025-25005Microsoft Exchange Server Tampering Vulnerability
CVE-2025-24999Microsoft SQL Server Elevation of Privilege Vulnerability
NO CREDIT CARD REQUIRED

Ready to get started?
You’ll be up and running in no time.

Explore all our features, free for 14 days.