First published: Tue Oct 11 2022(Updated: )
Windows USB Serial Driver Information Disclosure Vulnerability.
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 10 | =20h2 | |
Microsoft Windows 10 | =21h1 | |
Microsoft Windows 10 | =21h2 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 11 | ||
Microsoft Windows 11 | ||
Microsoft Windows 11 | =22h2 | |
Microsoft Windows 11 | =22h2 | |
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2022 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38030 is a vulnerability that allows an attacker to obtain sensitive information through the Windows USB Serial Driver.
CVE-2022-38030 affects Windows 10 versions 20H2, 21H1, 21H2, and 1809, as well as Windows 11 versions 22H2 and Windows Server 2019 and 2022.
CVE-2022-38030 has a severity score of 4.3, which is considered medium.
An attacker can exploit CVE-2022-38030 by sending specially crafted USB serial data to the affected system, allowing them to obtain sensitive information.
Yes, Microsoft has released a security advisory with guidance on mitigating the vulnerability. Please refer to the provided reference for more information.