Today is the monthly 'Windows Update' day.



The monthly Windows Update, which delivers security updates and bug fixes for Windows, has been released. The Windows Update for August 13, 2025 includes security updates for 119 flaws, including a privilege escalation vulnerability in Windows Kerberos .

August 2025 Security Updates (Monthly) | MSRC Blog | Microsoft Security Response Center
https://msrc.microsoft.com/blog/2025/08/202508-security-update/

August 2025 Security Updates - Release Notes - Security Update Guide - Microsoft
https://msrc.microsoft.com/update-guide/releaseNote/2025-Aug



The August 2025 security updates are as follows:

Target products maximum severity The biggest impact Related knowledge base articles or support web pages
Windows 11 v24H2, v23H2 emergency Remote code execution possible v24H2 5063878 Hotpatch 5064010 v23H2 5063875
Windows 10 emergency Remote code execution possible v22H2 5063709
Windows Server 2025
(including Server Core installation)
emergency Remote code execution possible 5063878

Hotpatch 5064010
Windows Server 2022, 23H2 Edition
(including Server Core installation)
emergency Remote code execution possible Windows Server 2022, 5063880
Windows Server 23H2, 5063899
Windows Server 2019, 2016
(including Server Core installations)
emergency Remote code execution possible Windows Server 2019, 5063877
Windows Server 2016, 5063871
Microsoft Office emergency Remote code execution possible https://learn.microsoft.com/officeupdates
Microsoft SharePoint emergency Remote code execution possible https://learn.microsoft.com/officeupdates/sharepoint-updates
Microsoft Teams important Remote code execution possible https://learn.microsoft.com/microsoftteams
Microsoft Exchange Server important Information leakage https://learn.microsoft.com/exchange
Released: August 2025 Exchange Server Security Updates | Microsoft Community Hub
Microsoft Dynamics 365 important Information leakage https://learn.microsoft.com/dynamics365
Microsoft SQL Server important Privilege Escalation https://learn.microsoft.com/sql
Microsoft Visual Studio important Remote code execution possible https://learn.microsoft.com/visualstudio
Microsoft Azure emergency Privilege Escalation https://learn.microsoft.com/azure


Among the vulnerabilities fixed in the August 2025 security updates, CVE-2025-53779 , a privilege escalation vulnerability in Windows Kerberos, is a zero-day vulnerability.

In addition, CVE-2025-53766 , a remote code execution vulnerability in GDI+ , and CVE-2025-50165 , a remote code execution vulnerability in the Windows graphics component, have a high CVSS base score of 9.8.

Windows Update is released on the second Tuesday of every month in the US, and the next update is scheduled to be available on Wednesday, September 10, 2025, Japan time.

in Software,   Security, Posted by log1h_ik