CVE-2025-24052 HIGH

CVE-2025-24052: Windows Agere Modem Driver Elevation of Privilege Vulnerability

Vendor Microsoft
Product Windows 10 Version 1507
Weakness CWE-121
Published October 14, 2025
Last update February 26, 2026

CVSS base score

7.8/10
Attack vector Local
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality High
Integrity High

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C

What the vulnerability does

01Description

Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating systems. This is an announcement of the upcoming removal of ltmdm64.sys driver. The driver has been removed in the October cumulative update. Fax modem hardware dependent on this specific driver will no longer work on Windows. Microsoft recommends removing any existing dependencies on this hardware.

Key dates

02Disclosure timeline

October 14, 2025 CVE published
February 26, 2026 Record updated