CVE-2021-34522: Microsoft Defender Remote Code Execution Vulnerability
Published Jul 13, 2021
·Updated
Microsoft Defender Remote Code Execution Vulnerability
Affected Software
2 affected componentsFixes available
Microsoft Malware Protection Engine<1.1.18242.0
Microsoft Malware Protection Engine<1.1.18242.0
1.1.18242.0
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 1.1.18242.0
Event History
Jul 13, 2021
CVE Published
via Microsoft·02:00 PM
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·02:00 PM
Description
Jul 14, 2021
CVE Published
via MITRE·05:54 PM
Data Sourced
via MITRE·05:54 PM
DescriptionSeverity
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is CVE-2021-34522?
CVE-2021-34522 is a remote code execution vulnerability in Microsoft Defender.
2
How severe is CVE-2021-34522?
CVE-2021-34522 has a severity rating of 7.8 out of 10, which is considered critical.
3
Which software is affected by CVE-2021-34522?
CVE-2021-34522 affects the Microsoft Malware Protection Engine version up to and excluding 1.1.18242.0.
4
Is CVE-2021-34522 the same as CVE-2021-34464?
No, CVE-2021-34522 is a unique vulnerability separate from CVE-2021-34464.
5
How can I fix CVE-2021-34522?
To fix CVE-2021-34522, apply the necessary security updates provided by Microsoft.