Microsoft Security Response Center guidance
See the Microsoft Security Update Guide for the update that applies to your product.
Vulnerability intelligence
CVE-2025-58187 and is rated High severity with a CVSS score of 7.5. It is not in the current CISA KEV record we collected. That does not prove exploitation has not occurred.
See the Microsoft Security Update Guide for the update that applies to your product.
Due to the design of the name constraint checking algorithm, the processing time of some inputs scale non-linearly with respect to the size of the certificate. This affects programs which validate arbitrary certificate chains.