<< Back
CVE Number Vulnerability Product Severity Date
CVE-2025-21194 Microsoft Surface Security Feature Bypass Vulnerability Microsoft Surface Laptop Important 26-02-2025

Technical Information

“The attacker needs user interaction to exploit this vulnerability and bypass the security feature, but requires multiple condtions to be met such as specific application behavior, user actions, manipulation of parameters passed to a function, and impersonation of an integrity level token

Patch release date: Feb 11, 2025
Further information on this vulnerability is available at : CVE-2025-21194

Affected Software

Surface Laptop 4 with Intel Processor,
Microsoft Surface Laptop Go 2,
Microsoft Surface Go 3,
Microsoft Surface Laptop Go 3,
Surface Laptop 4 with AMD Processor,
Microsoft Surface Pro 7+,
Microsoft Surface Hub 2S,
Surface Laptop 3 with Intel Processor,
Microsoft Surface Hub 3,
Microsoft Surface Go 2,
Microsoft Surface Laptop Go,
Microsoft Surface Pro 8,
Surface Windows Dev Kit,
Microsoft Surface Pro 9 ARM,
Microsoft Surface Hub