Microsoft Addresses CVE-2025-38184 and CVE-2025-38135 Null Pointer Dereference Vulnerabilities

Microsoft Addresses CVE-2025-38184 and CVE-2025-38135 Null Pointer Dereference Vulnerabilities

First seen 18 Feb 2026, 12:23 UTC Api.Msrc.Microsoft 44.7

Article Content

Browse articles
ThreatCluster

Microsoft has published information regarding two vulnerabilities, CVE-2025-38184 and CVE-2025-38135, both related to null pointer dereference issues in their software. CVE-2025-38184 was published on July 4, 2025, while CVE-2025-38135 was published on July 3, 2025. These vulnerabilities could potentially affect systems utilizing the respective components.

Timeline

2025-07-03
CVE-2025-38135 published
2025-07-04
CVE-2025-38184 published
2026-02-18
Microsoft publishes information on both vulnerabilities