CVE-2021-34440: GDI+ Information Disclosure Vulnerability
GDI+ Information Disclosure Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.20069Patch KB5004285 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.7601.25661Patch KB5004307 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.2.9200.23409Patch KB5004302 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.21167Patch KB5004299 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.20069Patch KB5004298 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.4530Patch KB5004238 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.19003Patch KB5004249 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19042.1110Patch KB5004237 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19041.1110Patch KB5004237 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19043.1110Patch KB5004237 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.18363.1679Patch KB5004245 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.2061Patch KB5004244
Event History
Frequently Asked Questions
What is the severity of CVE-2021-34440?
CVE-2021-34440 is rated as important based on its potential for information disclosure.
How do I fix CVE-2021-34440?
To fix CVE-2021-34440, apply the latest security updates provided by Microsoft for the affected Windows versions.
Which versions of Windows are affected by CVE-2021-34440?
CVE-2021-34440 affects multiple versions of Windows, including Windows 10, Windows 7, Windows 8.1, and various Windows Server editions.
What type of vulnerability is CVE-2021-34440?
CVE-2021-34440 is classified as an Information Disclosure vulnerability in GDI+.
What could happen if I don't address CVE-2021-34440?
Failing to address CVE-2021-34440 may allow an attacker to gain unauthorized access to sensitive information on affected systems.