First published: Tue Oct 10 2023(Updated: )
Windows Media Foundation Core Remote Code Execution Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows Server 2012 | ||
Microsoft Windows Server 2012 | ||
Microsoft Windows 11 | =22H2 | |
Microsoft Windows Server 2012 R2 | ||
Microsoft Windows 10 | =21H2 | |
Microsoft Windows 10 | =1607 | |
Microsoft Windows Server 2008 R2 | ||
Microsoft Windows Server 2008 R2 | ||
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =22H2 | |
Microsoft Windows Server 2012 R2 | ||
Microsoft Windows 10 | =22H2 | |
Microsoft Windows 10 | ||
Microsoft Windows 10 | =22H2 | |
Microsoft Windows 11 | =21H2 | |
Microsoft Windows 11 | =22H2 | |
Microsoft Windows 10 | ||
Microsoft Windows 10 | =21H2 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 10 | =1809 | |
Microsoft Windows 11 | =21H2 | |
Microsoft Windows Server 2019 | ||
Microsoft Windows 10 | =21H2 | |
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2022 | ||
Microsoft Windows 10 | =1809 | |
Microsoft Windows Server 2022 | ||
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2016 | ||
Microsoft Windows 10 1507 | <10.0.10240.20232 | |
Microsoft Windows 10 1507 | <10.0.10240.20232 | |
Microsoft Windows 10 1607 | <10.0.14393.6351 | |
Microsoft Windows 10 1607 | <10.0.14393.6351 | |
Microsoft Windows 10 1809 | <10.0.17763.4974 | |
Microsoft Windows 10 21h2 | <10.0.19041.3570 | |
Microsoft Windows 10 22h2 | <10.0.19045.3570 | |
Microsoft Windows 11 21h2 | <10.0.22000.2538 | |
Microsoft Windows 11 22h2 | <10.0.22621.2428 | |
Microsoft Windows Server 2008 | =r2-sp1 | |
Microsoft Windows Server 2012 | ||
Microsoft Windows Server 2012 | =r2 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2019 | ||
Microsoft Windows Server 2022 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-36710 is a vulnerability in Windows Media Foundation Core that allows remote code execution.
Windows 10 versions 21H2, 22H2, and 1809, Windows 11 versions 21H2 and 22H2, Windows Server 2012, Windows Server 2012 R2, Windows Server 2016, Windows Server 2019, and Windows Server 2022 are affected by CVE-2023-36710.
CVE-2023-36710 has a severity rating of 7.8 (high).
To fix CVE-2023-36710, apply the relevant security patch provided by Microsoft for your specific Windows version.
You can find more information about CVE-2023-36710 on the Microsoft Security Response Center website.