VYPR
Unrated severityNVD Advisory· Published Oct 14, 2025· Updated Feb 22, 2026

NtQueryInformation Token function (ntifs.h) Elevation of Privilege Vulnerability

CVE-2025-55696

Description

Time-of-check time-of-use (toctou) race condition in NtQueryInformation Token function (ntifs.h) allows an authorized attacker to elevate privileges locally.

Affected products

14

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.