CVE-2023-28292: Raw Image Extension Remote Code Execution Vulnerability
Published Apr 11, 2023
·Updated
Raw Image Extension Remote Code Execution Vulnerability
Affected Software
13 affected componentsFixes available
Microsoft Raw Image Extension
All of the following
Microsoft Raw Image Extension<2.1.60611.0
Any of the following
Microsoft Windows 10 20h2
Microsoft Windows 10 21h2
Microsoft Windows 11 22h2
All of the following
Microsoft Raw Image Extension<2.0.60612.0
Microsoft Windows 11 21h2
Microsoft Raw Image Extension<2.1.60611.0
Microsoft Windows 10 20h2
Microsoft Windows 10 21h2
Microsoft Windows 11 22h2
Microsoft Raw Image Extension<2.0.60612.0
Microsoft Windows 11 21h2
Remediation
Event History
Apr 11, 2023
CVE Published
07:00 AM
Data Sourced
07:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·07:13 PM
Data Sourced
via MITRE·07:13 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-28292.
2
What is the title of this vulnerability?
The title of this vulnerability is Raw Image Extension Remote Code Execution Vulnerability.
3
What is the severity level of CVE-2023-28292?
The severity level of CVE-2023-28292 is high with a severity value of 7.
4
Which software is affected by CVE-2023-28292?
The Raw Image Extension software developed by Microsoft is affected by CVE-2023-28292.
5
How can I fix CVE-2023-28292?
To fix CVE-2023-28292, it is recommended to apply the security updates provided by Microsoft. You can find more information and download the updates from the Microsoft support website.