CVE-2022-22040Uncontrolled Resource Consumption in Microsoft Windows 7 Service Pack 1

Severity
7.3HIGHNVD
EPSS
2.9%
top 13.70%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 12
Latest updateJul 13

Description

Internet Information Services Dynamic Compression Module Denial of Service Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:LExploitability: 3.9 | Impact: 3.4

Affected Packages20 packages

CVEListV5microsoft/windows_7_service_pack_16.1.06.1.7601.26022
CVEListV5microsoft/windows_server_2008_service_pack_26.0.6003.06.0.6003.21569
CVEListV5microsoft/windows_server_2008_r2_service_pack_16.1.7601.06.1.7601.26022
CVEListV5microsoft/windows_76.1.06.1.7601.26022
CVEListV5microsoft/windows_8.16.3.06.3.9600.20478

🔴Vulnerability Details

2
GHSA
GHSA-8fp6-xwm6-hv42: Internet Information Services Dynamic Compression Module Denial of Service Vulnerability2022-07-13
CVEList
Internet Information Services Dynamic Compression Module Denial of Service Vulnerability2022-07-12

📋Vendor Advisories

2
Microsoft
Internet Information Services Dynamic Compression Module Denial of Service Vulnerability2022-07-12
VMware
VMware ESXi, Workstation, and Fusion updates address multiple security vulnerabilities (CVE-2021-22040, CVE-2021-22041, CVE-2021-22042, CVE-2021-22043, CVE-2021-22050)2022-02-15
CVE-2022-22040 — Uncontrolled Resource Consumption | cvebase