CVE-2025-3052 | Microsoft Windows up to Server 2025 InsydeH2O Secure Boot untrusted pointer dereference
A vulnerability was found in Microsoft Windows. It has been classified as critical. Affected is an unknown function of the component InsydeH2O Secure Boot. The manipulation leads to untrusted pointer dereference.
This vulnerability is traded as CVE-2025-3052. Attacking locally is a requirement. There is no exploit available.
It is recommended to apply a patch to fix this issue.