CVE-2022-23295: Raw Image Extension Remote Code Execution Vulnerability
Published Mar 8, 2022
·Updated
Raw Image Extension Remote Code Execution Vulnerability
Affected Software
2 affected componentsFixes available
Microsoft Raw Image Extension<2.1.30191.0
Microsoft Raw Image Extension
Event History
Mar 8, 2022
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Description
Mar 9, 2022
CVE Published
via MITRE·05:07 PM
Data Sourced
via MITRE·05:07 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2022-23295?
CVE-2022-23295 is a vulnerability known as Raw Image Extension Remote Code Execution Vulnerability.
2
What software is affected by CVE-2022-23295?
The Microsoft Raw Image Extension software version up to and excluding 2.1.30191.0 is affected by CVE-2022-23295.
3
How severe is CVE-2022-23295?
CVE-2022-23295 has a severity rating of 7.8 (High).
4
How can I fix CVE-2022-23295?
To fix CVE-2022-23295, update the Microsoft Raw Image Extension software to version 2.1.30191.0 or higher.
5
Where can I find more information about CVE-2022-23295?
You can find more information about CVE-2022-23295 on the Microsoft Security Response Center website: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-23295