---
title: "Patch Tuesday: August 2025"
description: An overview of Patch Tuesday for August 2025
---

[RoboShadow Blog ](https://www.roboshadow.com/blog)

# [Patch Tuesday: August 2025](https://www.roboshadow.com/blog/patch-tuesday-august-2025)

 Written by [Liz Teague](https://www.roboshadow.com/blog/author/liz-teague) | Aug 13, 2025 8:05:23 AM

Welcome to August! The latest Patch Tuesday update dropped yesterday, releasing updates for 107 vulnerabilities. and fixing 1 publicly disclosed vulnerability.

Pssst... did you know that you can now set up AutoFix rules for [Windows Updates](https://portal.roboshadow.com/reports/os-updates) with RoboShadow's Cyber Heal function? 

You can find a full list of security updates for August [here.](https://msrc.microsoft.com/update-guide/releaseNote/2025-Aug)

#### Key Updates

- 107 Vulnerabilities Patched
- 1 publicly disclosed zero-day
- 13 critical vulnerabilities

 

Vulnerability Types Released in August 2025:

 

#### Zero Day Vulnerabilities 

**[CVE-2025-53779](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-53779) – Windows Kerberos Elevation of Privilege**

- **CVSS Score** 7.2 (Moderate)
- **Description: **This is an Elevation of Privilege (EoP) vulnerability in Windows Kerberos, also publicly disclosed as a zero‑day and referred to as “BadSuccessor.”
  
  It involves relative path traversal in Windows Kerberos. Exploiting it allows an authenticated attacker to escalate further and obtain domain administrator privileges over a network.  
- **Exploitation Status:** Publicly disclosed zero-day; no known active exploitation; exploitation considered less likely.

#### Critical Vulnerability Summary

The following critical CVEs have been remediated this month, and should be patched as soon as possible:

| CVE | CVSS | Description Summary |
| --- | --- | --- |
| [CVE-2025-50165](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-50165) | 9.8 | RCE in Windows graphics via JPEG decoding without user interaction |
| [CVE-2025-53766](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-53766) | 9.8 | GDI+ RCE via heap overflow using malicious metafiles, no user interaction needed |
| [CVE-2025-53778](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-53788) | 8.8 | NTLM EoP bug allowing SYSTEM-level elevation over network; exploitation more likely |
| [CVE-2025-53740](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-53740) | 8.4 | Use-after-free RCE in Microsoft Office (Preview Pane) |
| [CVE-2025-53731](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-53731) | 8.4 | Use-after-free RCE in Microsoft Office (Preview Pane) |
| [CVE-2025-53784](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-53784) | 8.4 | Use-after-free RCE in Microsoft Word (Preview Pane) |
| [CVE-2025-53733](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-53733) | 8.4 | RCE in Microsoft Word via numeric conversion error (Preview Pane) |
| [CVE-2025-50177](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-50177) | 8.1 | MSMQ RCE via use-after-free and race condition exploiting HTTP packets |
| [CVE-2025-49707](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-49707) | 7.9 | Azure VM spoofing via improper access control |
| [CVE-2025-50176](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-50176) | 7.8 | RCE in DirectX Graphics Kernel via type confusion |
| [CVE-2025-53781](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-53781) | 7.7 | Azure VM information disclosure by low-privilege attacker |
| [CVE-2025-53793](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-53793) | 7.5 | Azure Stack Hub information disclosure |
| [CVE-2025-48807](https://msrc.microsoft.com/update-guide/en-US/advisory/CVE-2025-48807) | 7.5 | RCE in Hyper-V—nested VM escape to guest admin |

 

#### Actions to Take:

Here is what IT teams should prioritise this month:

- **Patch Immediately: ** Immediately deploy fixes for CVE-2025-50165, CVE-2025-53766, and CVE-2025-53778, as these have the highest CVSS scores and/or are more likely to be exploited. Also apply the patch for CVE-2025-53779 (Windows Kerberos EoP zero-day) without delay, even though exploitation is currently considered less likely.

- **Update All Systems Running Office and Word: **The multiple use-after-free RCE vulnerabilities in Microsoft Office and Word can be triggered via the Preview Pane, meaning a malicious document can execute code without being opened. Disable the Preview Pane where patching is not yet complete.
- Patch Internet-Facing Systems First: Apply updates to all public-facing servers and services before internal systems, especially Azure VMs, Hyper-V hosts, and DirectX-enabled systems.4
- **Audit and Monitor Kerberos and NTLM Traffic:  **For CVE-2025-53779 and CVE-2025-53778, review authentication logs for unusual patterns, failed login bursts, or unexpected privilege escalations.

> ###### Did you know? You can use the RoboShadow platform to scan for vulnerabilities, check your [Windows Updates](https://portal.roboshadow.com/reports/os-updates) and also patch any outstanding [software updates](https://portal.roboshadow.com/reports/software) using [Cyber Heal?](https://portal.roboshadow.com/cyber-heal)

<https://portal.roboshadow.com/login?_gl=1%2a1oirydr%2a_gcl_aw%2aR0NMLjE3NTMxODk2MjcuQ2p3S0NBanc3ZnpEQmhBN0Vpd0FPcUpraC1kSWJISFNNWVBja2t3cEJITU8zOTQzd09jdklaa1gzd195VXNzS19VQlA4OF9kaTFWQmlob0NPVlVRQXZEX0J3RQ..%2a_gcl_au%2aMTY3MDIyMTgxNS4xNzUwMzQwNDM1%2aFPAU%2aMTU5MDgzNjExMC4xNzUwMzM4ODIx%2a_ga%2aMjcyMzU4MzUyLjE3NDI1NjIzMzM.%2a_ga_238EGX2005%2aczE3NTUwNzE4ODkkbzE2MiRnMCR0MTc1NTA3MTg5MCRqNTkkbDAkaDEzMzc4NTQ3MDA.%2a_fplc%2aMVdHcHc1WTVKQ0puUG5mWFVWNUU2ZEJCcFlld2hBbWpYeUZqQ0FxeHIyaWpvUjdrOXBlcUFTZ1lmc3dEdGU4WFZhYlg3RXlGVkxoTkwlMkZ4ejdDZVBVSlRDWDFNWERxUjZ2JTJCMDFLUjVGTW8zeTFQTXdSVDJibVhKbHNvaGFxQSUzRCUzRA..>

 

If you have any questions about Patch Tuesday, or feedback on this blog please   
reach out to us: [hello@roboshadow.com](mailto:hello@roboshadow.com) 

Thanks for reading!

[View full post](https://www.roboshadow.com/blog/patch-tuesday-august-2025)

```json
{
  "@context" : "http://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Liz Teague"
  },
  "dateModified" : "2025-08-13T09:46:54.942Z",
  "datePublished" : "2025-08-13T08:05:23Z",
  "headline" : "Patch Tuesday: August 2025",
  "image" : {
    "@type" : "ImageObject",
    "height" : 1632,
    "url" : "https://25500997.fs1.hubspotusercontent-eu1.net/hubfs/25500997/roboshadow_jacob_Breathtaking_futuristic_city_skyline_at_dawn_s_54960d00-40c8-4d51-8278-67f96c28c1ac.png",
    "width" : 2912
  },
  "mainEntityOfPage" : "https://www.roboshadow.com/blog/patch-tuesday-august-2025",
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "height" : 60,
      "url" : "/hs/hsstatic/content_shared_assets/static-1.4092/img/default-amp-logo.png",
      "width" : 60
    },
    "name" : "RoboShadow Blog"
  }
}
```