ThreatCluster

Microsoft Addresses Vulnerabilities in mISDN: CVE-2024-42280 and CVE-2025-39833

First seen 18 Feb 2026, 12:23 UTC Api.Msrc.Microsoft 39

Article Content

Browse articles
ThreatCluster

Microsoft has published information on two vulnerabilities affecting the mISDN driver. CVE-2024-42280 addresses a use-after-free issue in hfcmulti_tx(), while CVE-2025-39833 resolves a warning related to deleting an uninitialized timer. Both vulnerabilities could impact systems utilizing the mISDN framework.

Timeline

2024-08-17
CVE-2024-42280 published
2025-09-16
CVE-2025-39833 published
2026-02-18
Microsoft publishes information on both CVEs