CVE-2025-21191 | Microsoft Windows up to Server 2025 Local Security Authority toctou (WID-SEC-2025-0744)
A vulnerability classified as critical has been found in Microsoft Windows. Affected is an unknown function of the component Local Security Authority. The manipulation leads to time-of-check time-of-use.
This vulnerability is traded as CVE-2025-21191. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.