Microsoft disclosed and patched CVE-2025-59517, an elevation of privilege vulnerability in the Windows Storage VSP Driver. The issue was published through Microsoft's Security Update Guide, which identifies the affected component as a Windows storage virtualization driver and classifies the flaw as enabling privilege escalation on impacted systems.
Microsoft released the advisory through both its product advisory and Security Update Guide channels, but did not provide a public synopsis with additional technical details in the referenced notices. Organizations using Windows systems should review the vendor guidance for CVE-2025-59517, determine exposure across affected assets, and apply the relevant security updates as part of routine patch management.

See real exploitation activity before you spend the cycle.
1 event from the most recent confirmed update back to the earliest known activity.
Microsoft added CVE-2025-59517, a Windows Storage VSP Driver Elevation of Privilege vulnerability, to its Security Update Guide. The two references describe the same advisory publication event.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
2 references tracked. Mallory keeps watching after this page renders.
msrc.microsoft.com
Open sourcemsrc.microsoft.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.