CVE-2022-23257Race Condition in Microsoft Windows 10 Version 21h1

CWE-362Race Condition10 documents6 sources
Severity
8.8HIGHNVD
EPSS
0.3%
top 44.16%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 15
Latest updateApr 16

Description

Windows Hyper-V Remote Code Execution Vulnerability

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:HExploitability: 2.0 | Impact: 6.0

Affected Packages8 packages

CVEListV5microsoft/windows_server_202210.0.20348.010.0.20348.643
CVEListV5microsoft/windows_10_version_21h110.0.010.0.19043.1645
CVEListV5microsoft/windows_10_version_21h210.0.19043.010.0.19044.1645
CVEListV5microsoft/windows_11_version_21h210.0.010.0.22000.613
CVEListV5microsoft/windows_11_version_22h210.0.22621.010.0.22621.1413

🔴Vulnerability Details

5
GHSA
GHSA-4hw3-x9c6-9f43: Windows Hyper-V Remote Code Execution Vulnerability2022-04-16
GHSA
GHSA-3pw7-m4qj-fpv2: Windows Hyper-V Remote Code Execution Vulnerability2022-04-16
GHSA
GHSA-f26q-x9wv-632w: Windows Hyper-V Remote Code Execution Vulnerability2022-04-16
GHSA
GHSA-hr7f-gcqx-fq4v: Windows Hyper-V Remote Code Execution Vulnerability2022-04-16
CVEList
Windows Hyper-V Remote Code Execution Vulnerability2022-04-15

📋Vendor Advisories

1
Microsoft
Windows Hyper-V Remote Code Execution Vulnerability2022-04-12

🕵️Threat Intelligence

3
Talos
Microsoft Patch Tuesday includes most vulnerabilities since Sept. 20202022-04-12
Talos
Microsoft Patch Tuesday includes most vulnerabilities since Sept. 20202022-04-12
Crowdstrike
April 2022 Patch Tuesday: Updates and Analysis
CVE-2022-23257 — Race Condition in Microsoft | cvebase