Microsoft released a patch addressing the critical vulnerability CVE-2025-21307 in the Windows Reliable Multicast Transport Driver.
The vulnerability allows remote attackers to execute arbitrary code on a vulnerable Windows system through specially crafted packets in the PGM protocol.
Deploying the patch on critical servers before the weekend can be challenging due to the need for reboot and application compatibility testing.
To mitigate the risk until patch deployment, organizations can choose from various suggested techniques, such as disabling the MSMQ service.