CVE-2025-7676 - CVE House
Back to Database
Status published Medium CVE-2025-7676

DLL hijacking of all PE32 executables on Windows 11 for ARM CPUs

Vulnerability Description

DLL hijacking of all PE32 executables when run on Windows for ARM64 CPU architecture. This allows an attacker to execute code, if the attacker can plant a DLL in the same directory as the executable. Vulnerable versions of Windows 11 for ARM attempt to load Base DLLs that would ordinarily not be loaded from the application directory. Fixed in release 24H2, but present in all earlier versions of Windows 11 for ARM CPUs.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-7676

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Microsoft, Inc

View all reports →

Affected Software

Windows 11
Vulnerable Versions:
0

Timeline

Official Publish: July 28th, 2025
Last Modified: July 28th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)