ThreatCluster

Multiple CVEs Addressed: Idempotency Improvements in Networking Functions

First seen 21 Dec 2025, 09:56 UTC Api.Msrc.Microsoft 42

Article Content

Browse articles
ThreatCluster

Two vulnerabilities, CVE-2025-37932 and CVE-2025-38177, have been reported in the Microsoft networking stack. The issues pertain to the functions htb_qlen_notify() and hfsc_qlen_notify(), which have been modified to ensure idempotency. Affected systems include those utilizing these specific networking functions.