Security Update News
Update Information
| Title | Azure Service Fabric Runtime Elevation of Privilege Vulnerability |
|---|---|
| Update ID | MS:CVE-2025-21195 |
| Type | mscve |
| Published | 2025-07-08T07:00:00 |
| Last Updated | 2025-07-08T07:00:00 |
Security Impact
| CVSS Score | 6.0 |
|---|---|
| Severity | MEDIUM |
AI Analysis
| AI Description | A vulnerability in Azure Service Fabric Runtime could allow an authorized attacker to elevate privileges locally due to improper link resolution before file access. |
|---|---|
| AI Severity | Medium |
| AI Vendor | Microsoft |
| AI Product | Azure Service Fabric Runtime |
| AI Version | Versions not specified |
Affected CVEs
- CVE-2025-21195
Update Details
Improper link resolution before file access (‘link following’) in Service Fabric allows an authorized attacker to elevate privileges locally.