CVE-2026-25188 | Microsoft Windows up to Server 2025 Telephony Service heap-based overflow (Nessus ID 301776)
A vulnerability described as critical has been identified in Microsoft Windows. The affected element is an unknown function of the component Telephony Service. Executing a manipulation can lead to heap-based buffer overflow.
This vulnerability is handled as CVE-2026-25188. The attack can only be done within the local network. There is not any exploit available.
A patch should be applied to remediate this issue.