CVE-2022-21878: Windows Geolocation Service Remote Code Execution Vulnerability
Published Jan 11, 2022
·Updated
Windows Geolocation Service Remote Code Execution Vulnerability
Affected Software
48 affected componentsFixes available
Microsoft Windows Server=20H2
Microsoft Windows Server 2019
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server 2022
Microsoft Windows Server 2016
Microsoft Windows Server 2016
Microsoft Windows 10=20H2
Microsoft Windows 10=20H2
Microsoft Windows 10=1809
Microsoft Windows 10=1809
Microsoft Windows 10=1809
Microsoft Windows 10=1607
Microsoft Windows 10=1607
Microsoft Windows 10=21H1
Microsoft Windows 10=21H1
Microsoft Windows 10=21H1
Microsoft Windows 10=21H2
Microsoft Windows 10=21H2
Microsoft Windows 10=21H2
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 10
Microsoft Windows 10
Microsoft Windows 10
Microsoft Windows 10
Microsoft Windows 10=20h2
Microsoft Windows 10=20h2
Microsoft Windows 10=20h2
Microsoft Windows 10=21h1
Microsoft Windows 10=21h1
Microsoft Windows 10=21h1
Microsoft Windows 10=21h2
Microsoft Windows 10=21h2
Microsoft Windows 10=21h2
Microsoft Windows 10=1607
Microsoft Windows 10=1607
Microsoft Windows 10=1809
Microsoft Windows 10=1809
Microsoft Windows 10=1809
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows Server=20h2
Microsoft Windows Server=2022
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Remediation
Event History
Jan 11, 2022
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·08:22 PM
Data Sourced
via MITRE·08:22 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2022-21878?
CVE-2022-21878 is classified as a critical vulnerability, allowing for remote code execution.
2
How do I fix CVE-2022-21878?
To mitigate CVE-2022-21878, you should apply the latest security updates provided by Microsoft.
3
What versions of Windows are affected by CVE-2022-21878?
CVE-2022-21878 affects multiple versions of Windows 10 and Windows Server, including various builds.
4
Can exploiting CVE-2022-21878 result in data loss?
Yes, exploitation of CVE-2022-21878 can potentially lead to data loss due to unauthorized access and execution of malicious code.
5
Is there a known exploit for CVE-2022-21878?
There are indications that CVE-2022-21878 is actively being exploited in the wild, increasing its urgency for resolution.