CVE-2021-24080Microsoft Windows 10 Version 1507 vulnerability

4 documents4 sources
Severity
6.5MEDIUMNVD
EPSS
20.7%
top 4.40%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 25
Latest updateMay 24

Description

Windows Trust Verification API Denial of Service Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages20 packages

CVEListV5microsoft/windows_7_service_pack_16.1.0publication
CVEListV5microsoft/windows_server_2008_service_pack_26.0.0publication
CVEListV5microsoft/windows_server_2008_r2_service_pack_16.1.0publication+1
CVEListV5microsoft/windows_76.1.0publication
CVEListV5microsoft/windows_8.16.3.0publication

Patches

🔴Vulnerability Details

2
GHSA
GHSA-w38p-fpff-c3gg: Windows Trust Verification API Denial of Service Vulnerability2022-05-24
CVEList
Windows Trust Verification API Denial of Service Vulnerability2021-02-25

📋Vendor Advisories

1
Microsoft
Windows Trust Verification API Denial of Service Vulnerability2021-02-09
CVE-2021-24080 — Microsoft vulnerability | cvebase