CVE-2023-28291: Raw Image Extension Remote Code Execution Vulnerability
Published Apr 11, 2023
·Updated
Raw Image Extension Remote Code Execution Vulnerability
Affected Software
13 affected componentsFixes available
Microsoft Raw Image Extension
Microsoft Raw Image Extension<2.1.60611.0
Microsoft Windows 10 20h2
Microsoft Windows 10 21h2
Microsoft Windows 11 22h2
Microsoft Raw Image Extension<2.0.60612.0
Microsoft Windows 11 21h2
All of the following
Microsoft Raw Image Extension<2.1.60611.0
Any of the following
Microsoft Windows 10 20h2
Microsoft Windows 10 21h2
Microsoft Windows 11 22h2
All of the following
Microsoft Raw Image Extension<2.0.60612.0
Microsoft Windows 11 21h2
Remediation
Event History
Apr 11, 2023
CVE Published
07:00 AM
Data Sourced
07:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·07:13 PM
Data Sourced
via MITRE·07:13 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-28291?
CVE-2023-28291 is a vulnerability known as Raw Image Extension Remote Code Execution, which allows attackers to execute code on the affected system remotely.
2
How severe is CVE-2023-28291?
CVE-2023-28291 has a severity rating of 8.4 out of 10, indicating a critical vulnerability.
3
What software is affected by CVE-2023-28291?
Microsoft Raw Image Extension is the affected software by CVE-2023-28291.
4
How can I fix CVE-2023-28291?
To fix CVE-2023-28291, it is recommended to apply the latest updates and patches provided by Microsoft. You can find more information on the official Microsoft support website.
5
Where can I find more information about CVE-2023-28291?
You can find more information about CVE-2023-28291 on the Microsoft Security Response Center's official website.