First published: Tue May 10 2022(Updated: )
Windows LDAP Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-22012, CVE-2022-22013, CVE-2022-22014, CVE-2022-29129, CVE-2022-29130, CVE-2022-29131, CVE-2022-29137, CVE-2022-29139, CVE-2022-29141.
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows Server 2012 R2 | ||
Microsoft Windows 7 | ||
Microsoft Windows 10 | ||
Microsoft Windows 8.1 for 32-bit systems | ||
Microsoft Windows Server 2008 R2 | ||
Microsoft Windows 10 | =21H1 | |
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =20H2 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 7 | ||
Microsoft Windows 10 | =1909 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 10 | =20H2 | |
Microsoft Windows Server 2012 R2 | ||
Microsoft Windows 10 | =1909 | |
Microsoft Windows Server | =20H2 | |
Microsoft Windows Server 2019 | ||
Microsoft Windows 8.1 for x64-based systems | ||
Microsoft Windows 10 | =21H2 | |
Microsoft Windows Server 2022 | ||
Microsoft Windows 10 | =1909 | |
Microsoft Windows 10 | =21H2 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2022 | ||
Microsoft Windows 11 | =21H2 | |
Microsoft Windows 11 | =21H2 | |
Microsoft Windows 10 | =21H2 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows 10 | =21H1 | |
Microsoft Windows 10 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2008 R2 | ||
Microsoft Windows 10 | =21H1 | |
Microsoft Windows Server 2012 x64 | ||
Microsoft Windows Server 2012 x64 | ||
Microsoft Windows RT | ||
Microsoft Windows Server 2008 Itanium | ||
Microsoft Windows Server 2008 Itanium | ||
Microsoft Windows 10 | ||
Microsoft Windows 10 | =20h2 | |
Microsoft Windows 10 | =21h1 | |
Microsoft Windows 10 | =21h2 | |
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 10 | =1909 | |
Microsoft Windows 11 | ||
Microsoft Windows 11 | ||
Microsoft Windows 7 | =sp1 | |
Microsoft Windows 8.1 | ||
Microsoft Windows RT | ||
Microsoft Windows Server | =20h2 | |
Microsoft Windows Server 2008 Itanium | =sp2 | |
Microsoft Windows Server 2008 Itanium | =r2-sp1 | |
Microsoft Windows Server 2012 x64 | ||
Microsoft Windows Server 2012 x64 | =r2 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2022 | ||
Microsoft Windows Server 2008 Itanium | ||
Microsoft Windows Server 2008 Itanium |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-29128 has a critical severity rating due to its potential for remote code execution.
To mitigate CVE-2022-29128, apply the latest security patches supplied by Microsoft for the affected Windows versions.
CVE-2022-29128 affects various versions of Microsoft Windows, including Windows 10, Windows 7, Windows Server 2012 R2, and others.
Exploitation of CVE-2022-29128 can allow attackers to execute arbitrary code on the affected systems, potentially leading to unauthorized access and data breaches.
As of now, there are reports suggesting that proof of concept code for CVE-2022-29128 may be available, increasing the urgency for patches.