CVE-2022-24486: Windows Kerberos Elevation of Privilege Vulnerability
Windows Kerberos Elevation of Privilege Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.5066Patch KB5012596 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.19265Patch KB5012653 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22000.613Patch KB5012592 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.1645Patch KB5012599 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.18363.2212Patch KB5012591 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19042.1645Patch KB5012599 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.643Patch KB5012604 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19043.1645Patch KB5012599 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.2803Patch KB5012647
Event History
Frequently Asked Questions
What is the severity of CVE-2022-24486?
CVE-2022-24486 has a high severity rating due to its potential to allow elevation of privilege in Windows systems.
How do I fix CVE-2022-24486?
You can fix CVE-2022-24486 by applying the latest security updates provided by Microsoft for the affected Windows versions.
Which versions are affected by CVE-2022-24486?
CVE-2022-24486 affects multiple versions of Windows including Windows 10, Windows 11, and Windows Server 2016, 2019, and 2022.
What types of systems are vulnerable to CVE-2022-24486?
CVE-2022-24486 primarily impacts both desktop and server versions of Windows operating systems.
What are the potential consequences of CVE-2022-24486?
If exploited, CVE-2022-24486 could allow an attacker to gain elevated permissions, potentially compromising the entire system.