CVE-2023-21803: Windows iSCSI Discovery Service Remote Code Execution Vulnerability
Windows iSCSI Discovery Service Remote Code Execution Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.21915Patch KB5022893 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.19747Patch KB5022858 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.5717Patch KB5022838 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.4010Patch KB5022840 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.2604Patch KB5022834 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19042.2604Patch KB5022834 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.2604Patch KB5022834
Event History
Frequently Asked Questions
What is the severity of CVE-2023-21803?
CVE-2023-21803 is rated as critical, allowing remote code execution if exploited.
How do I fix CVE-2023-21803?
To fix CVE-2023-21803, apply the relevant security updates provided by Microsoft for your affected version of Windows.
Which versions of Windows are affected by CVE-2023-21803?
CVE-2023-21803 affects multiple versions of Windows 10, including 20H2, 21H2, 22H2, and also Windows Server 2008.
Can CVE-2023-21803 affect Windows Server 2008 systems?
Yes, CVE-2023-21803 can affect Windows Server 2008 systems running specific configurations.
What type of vulnerability is CVE-2023-21803?
CVE-2023-21803 is a remote code execution vulnerability in the Windows iSCSI Discovery Service.