First published: Tue Mar 08 2022(Updated: )
Windows NT OS Kernel Elevation of Privilege Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 10 | =21H1 | |
Microsoft Windows 10 | =21H1 | |
Microsoft Windows Server 2012 R2 | ||
Microsoft Windows 10 | =21H1 | |
Microsoft Windows Server 2022 | ||
Microsoft Windows 10 | =20H2 | |
Microsoft Windows Server 2012 R2 | ||
Microsoft Windows Server 2022 | ||
Microsoft Windows 10 | =20H2 | |
Microsoft Windows 10 | =1909 | |
Microsoft Windows 7 | ||
Microsoft Windows Server 2008 R2 | ||
Microsoft Windows Server 2008 R2 | ||
Microsoft Windows 10 | =21H2 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows 10 | ||
Microsoft Windows 10 | =21H2 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows 10 | =1909 | |
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =21H2 | |
Microsoft Windows 10 | ||
Microsoft Windows 10 | =20H2 | |
Microsoft Windows 10 | =1607 | |
Microsoft Windows 11 | =21H2 | |
Microsoft Windows 10 | =1909 | |
Microsoft Windows Server | =20H2 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows 11 | =21H2 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 8.1 for 32-bit systems | ||
Microsoft Windows 7 | ||
Microsoft Windows 10 | =1809 | |
Microsoft Windows 8.1 for x64-based systems | ||
Microsoft Windows Server 2012 x64 | ||
Microsoft Windows Server 2012 x64 | ||
Microsoft Windows RT | ||
Microsoft Windows Server 2008 Itanium | ||
Microsoft Windows Server 2008 Itanium | ||
Microsoft Windows 10 | ||
Microsoft Windows 10 | =20h2 | |
Microsoft Windows 10 | =21h1 | |
Microsoft Windows 10 | =21h2 | |
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 10 | =1909 | |
Microsoft Windows 11 | ||
Microsoft Windows 11 | ||
Microsoft Windows 7 | =sp1 | |
Microsoft Windows 8.1 | ||
Microsoft Windows RT | ||
Microsoft Windows Server | =20h2 | |
Microsoft Windows Server | =2022 | |
Microsoft Windows Server 2008 Itanium | =sp2 | |
Microsoft Windows Server 2008 Itanium | =r2-sp1 | |
Microsoft Windows Server 2012 x64 | ||
Microsoft Windows Server 2012 x64 | =r2 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2008 Itanium | ||
Microsoft Windows Server 2008 Itanium |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-23298 has a CVSS score indicating it as a medium severity elevation of privilege vulnerability in the Windows NT OS Kernel.
To fix CVE-2022-23298, apply the security updates provided by Microsoft, specifically KB5011487 for Windows 10 and server updates corresponding to the affected products.
CVE-2022-23298 affects multiple versions including Windows 10 21H1, 21H2, Windows Server 2012 R2, and Windows 11.
CVE-2022-23298 is an elevation of privilege vulnerability, which means it requires local access for exploitation and cannot be triggered remotely.
Exploitation of CVE-2022-23298 could allow an attacker to gain elevated privileges on the affected systems, potentially leading to unauthorized actions.