CVE-2025-49688 | Microsoft Windows Server 2012 R2 up to Server 2022 23H2 Routing/Remote Access Service double free
A vulnerability was found in Microsoft Windows Server 2012 R2 up to Server 2022 23H2 and classified as critical. Affected by this issue is some unknown functionality of the component Routing/Remote Access Service. The manipulation leads to double free.
This vulnerability is handled as CVE-2025-49688. The attack may be launched remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.