MS Family February 2025 Secondary Security Update Advisory

Overview

 

Microsoft(https://www.microsoft.com) has released a security update that fixes vulnerabilities in products it has supplied. Users of affected products are advised to update to the latest version.

 

Affected Products

 

 

Browser Family

Microsoft Edge (Chromium-based)

Microsoft Edge for Android

Microsoft Edge for iOS

 

Microsoft Dynamics Suite

Dynamics 365 Sales

 

Resolved Vulnerabilities

 

One vulnerability rated Critical and four rated Important were found.

 

Browser Family

Improper Functional Implementation Vulnerability in Extensions API Functionality in Microsoft Edge (Chromium-based) (CVE-2025-0451)

Memory Reuse After Freeing Vulnerability in the Skia feature in Microsoft Edge (Chromium-based) (CVE-2025-0444)

Reuse after freeing memory vulnerability in V8 functionality in Microsoft Edge (Chromium-based) (CVE-2025-0445)

Low-grade spoofing vulnerability in Microsoft Edge (Chromium-based) (CVE-2025-21404, CVE-2025-21267)

Critical-grade remote code execution vulnerabilities in Microsoft Edge (Chromium-based) (CVE-2025-21279, CVE-2025-21283, CVE-2025-21408, CVE-2025-21342)

Moderate-grade spoofing vulnerability in Microsoft Edge for iOS and Android (CVE-2025-21253)

 

Microsoft Dynamics Suite

Emergency-grade elevation of privilege vulnerability in Microsoft Dynamics 365 Sales (CVE-2025-21177)

 

Vulnerability Patches

 

The following product-specific Vulnerability Patches were made available in the February 06, 2025 Update. Please use the Windows Update feature for automatic installation or refer to the URLs in the product information below to download and install.

Microsoft Edge (Chromium-based) version

Microsoft Edge for Android version

Microsoft Edge for iOS version

https://msrc.microsoft.com/update-guide/