CVE-2022-24548
published 2022-04-15CVE-2022-24548: Microsoft Defender Denial of Service Vulnerability
PriorityP418medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
2.71%
84.4th percentile
Microsoft Defender Denial of Service Vulnerability
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | malware_protection_engine | < 1.1.19100.5 | 1.1.19100.5 |
| microsoft | microsoft_malware_protection_engine | >= 1.1.0.0 < 1.1.19100.5 | 1.1.19100.5 |
| msrc | microsoft_malware_protection_engine | — | — |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
vendor_msrc5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mj28-hjxw-jmfp: Microsoft Defender Denial of Service Vulnerability
ghsa_unreviewed·2022-04-16
CVE-2022-24548 [MEDIUM] GHSA-mj28-hjxw-jmfp: Microsoft Defender Denial of Service Vulnerability
Microsoft Defender Denial of Service Vulnerability.
Microsoft
Microsoft Defender Denial of Service Vulnerability
vendor_msrc·2022-04-12·CVSS 5.5
CVE-2022-24548 [MEDIUM] Microsoft Defender Denial of Service Vulnerability
Microsoft Defender Denial of Service Vulnerability
FAQ:
References
Identification
First version of the Microsoft Malware Protection Engine with this vulnerability addressed
Version 1.1.19100.5
See Manage Updates Baselines Microsoft Defender Antivirus for more information.
Microsoft Defender is disabled in my environment, why are vulnerability scanners showing that I am vulnerable to this issue?
Vulnerability scanners are looking for specific binaries and version numbers on devices. Microsoft Defender files are still on disk even when disabled. Systems that have disabled Microsoft Defender are not in an exploitable state.
Why is no action required to install this update?
In response to a constantly changing threat landscape, Microsoft frequently updates malware definitions and the Mi
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-04-15
Published