First published: Tue Nov 14 2023(Updated: )
Windows HMAC Key Derivation Elevation of Privilege Vulnerability
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows Server 2022 23H2 | ||
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2019 | ||
Windows 11 | =23H2 | |
Windows 11 | =23H2 | |
Windows 11 | =22H2 | |
Windows 11 | =22H2 | |
Windows 11 | =21H2 | |
Windows 11 | =21H2 | |
Microsoft Windows Server 2022 | ||
Microsoft Windows Server 2022 | ||
Microsoft Windows 10 | <10.0.10240.20308 | |
Microsoft Windows 10 | <10.0.10240.20308 | |
Microsoft Windows 10 | <10.0.14393.6452 | |
Microsoft Windows 10 | <10.0.14393.6452 | |
Microsoft Windows 10 | <10.0.17763.5122 | |
Microsoft Windows 10 | <10.0.17763.5122 | |
Microsoft Windows 10 | <10.0.17763.5122 | |
Microsoft Windows 10 | <10.0.19041.3693 | |
Microsoft Windows 10 | <10.0.19041.3693 | |
Microsoft Windows 10 | <10.0.19041.3693 | |
Microsoft Windows 10 | <10.0.19045.3693 | |
Microsoft Windows 10 | <10.0.19045.3693 | |
Microsoft Windows 10 | <10.0.19045.3693 | |
Windows 11 | <10.0.22000.2600 | |
Windows 11 | <10.0.22000.2600 | |
Windows 11 | <10.0.22621.2715 | |
Windows 11 | <10.0.22621.2715 | |
Windows 11 | <10.0.22621.2715 | |
Windows 11 | <10.0.22621.2715 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2022 | ||
Windows 10 | =1809 | |
Windows 10 | =1809 | |
Windows 10 | =1809 | |
Windows 10 | =22H2 | |
Windows 10 | =22H2 | |
Windows 10 | =22H2 | |
Windows 10 | =1607 | |
Windows 10 | =1607 | |
Windows 10 | =21H2 | |
Windows 10 | =21H2 | |
Windows 10 | =21H2 | |
Windows 10 | ||
Windows 10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-36400 is a vulnerability in Windows that allows elevation of privilege.
CVE-2023-36400 affects various versions of Windows, including Windows Server 2022, Windows 10, Windows 11, and Windows Server 2016.
CVE-2023-36400 has a severity rating of 8.8, which is considered critical.
CVE-2023-36400 affects Windows Server 2022, Windows 10 (version 22H2, 21H2, and 1809), Windows 11 (version 23H2, 22H2, and 21H2), and Windows Server 2016.
To fix CVE-2023-36400, you need to apply the respective patches provided by Microsoft for the affected versions of Windows.