Vulnerability Intelligence Report
Windows Agere Modem Driver Elevation of Privilege Vulnerability
CVE-2025-24990
Microsoft is aware of vulnerabilities in the third party Agere Modem driver that ships natively with supported Windows operating systems. This is an announcement of the upcoming removal of ltmdm64.sys driver. The driver has been removed in the October cumulative update. Fax modem hardware dependent on this specific driver will no longer work on Windows. Microsoft recommends removing any existing dependencies on this hardware.
CISA KEV
SSVC: Active Exploitation
CVSS Base Score
7.8
HIGH
Exploitability:1.9
Impact Score:5.9
EPSS Probability:5.79%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Weaknesses (CWE)
CWE-822 ↗CWE-822: Untrusted Pointer Dereference
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| Microsoft | Windows 10 Version 1507 | 10.0.10240.0 < 10.0.10240.21161 (affected) |
| Microsoft | Windows 10 Version 1607 | 10.0.14393.0 < 10.0.14393.8519 (affected) |
| Microsoft | Windows 10 Version 1809 | 10.0.17763.0 < 10.0.17763.7919 (affected) |
| Microsoft | Windows 10 Version 21H2 | 10.0.19044.0 < 10.0.19044.6456 (affected) |
| Microsoft | Windows 10 Version 22H2 | 10.0.19045.0 < 10.0.19045.6456 (affected) |
| Microsoft | Windows 11 version 22H2 | 10.0.22621.0 < 10.0.22621.6060 (affected) |
| Microsoft | Windows 11 Version 23H2 | 10.0.22631.0 < 10.0.22631.6060 (affected) |
| Microsoft | Windows 11 Version 24H2 | 10.0.26100.0 < 10.0.26100.6899 (affected) |
| Microsoft | Windows 11 Version 25H2 | 10.0.26200.0 < 10.0.26200.6899 (affected) |
| Microsoft | Windows Server 2008 R2 Service Pack 1 | 6.1.7601.0 < 6.1.7601.27974 (affected) |
| Microsoft | Windows Server 2008 R2 Service Pack 1 (Server Core installation) | 6.1.7601.0 < 6.1.7601.27974 (affected) |
| Microsoft | Windows Server 2008 Service Pack 2 | 6.0.6003.0 < 6.0.6003.23571 (affected) |
| Microsoft | Windows Server 2008 Service Pack 2 (Server Core installation) | 6.0.6003.0 < 6.0.6003.23571 (affected) |
| Microsoft | Windows Server 2012 | 6.2.9200.0 < 6.2.9200.25722 (affected) |
| Microsoft | Windows Server 2012 (Server Core installation) | 6.2.9200.0 < 6.2.9200.25722 (affected) |
| Microsoft | Windows Server 2012 R2 | 6.3.9600.0 < 6.3.9600.22824 (affected) |
| Microsoft | Windows Server 2012 R2 (Server Core installation) | 6.3.9600.0 < 6.3.9600.22824 (affected) |
| Microsoft | Windows Server 2016 | 10.0.14393.0 < 10.0.14393.8519 (affected) |
| Microsoft | Windows Server 2016 (Server Core installation) | 10.0.14393.0 < 10.0.14393.8519 (affected) |
| Microsoft | Windows Server 2019 | 10.0.17763.0 < 10.0.17763.7919 (affected) |
| Microsoft | Windows Server 2019 (Server Core installation) | 10.0.17763.0 < 10.0.17763.7919 (affected) |
| Microsoft | Windows Server 2022 | 10.0.20348.0 < 10.0.20348.4294 (affected) |
| Microsoft | Windows Server 2022, 23H2 Edition (Server Core installation) | 10.0.25398.0 < 10.0.25398.1913 (affected) |
| Microsoft | Windows Server 2025 | 10.0.26100.0 < 10.0.26100.6899 (affected) |
| Microsoft | Windows Server 2025 (Server Core installation) | 10.0.26100.0 < 10.0.26100.6899 (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Microsoft Corporation · Vendor · USA |
| Reserved | 2025-01-30T15:14:20 |
| Published | 2025-10-14T17:00:10 |
| Patch Date | 2025-10-14 |
| Last Updated | 2026-02-26T17:47:29 |
Community Chatter & Buzz