CVE-2024-21435: Windows OLE Remote Code Execution Vulnerability
Published Mar 12, 2024
·Updated
Windows OLE Remote Code Execution Vulnerability
Affected Software
8 affected componentsFixes available
Microsoft Windows 11=23H2
Microsoft Windows 11=22H2
Microsoft Windows 11=22H2
Microsoft Windows 11=23H2
Microsoft Windows 11 22h2<10.0.22621.3296
Microsoft Windows 11 22h2<10.0.22621.3296
Microsoft Windows 11 23h2<10.0.22631.3296
Microsoft Windows 11 23h2<10.0.22631.3296
Event History
Mar 12, 2024
CVE Published
via Microsoft·07:00 AM
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·04:58 PM
Data Sourced
via MITRE·04:58 PM
DescriptionSeverity
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-21435?
CVE-2024-21435 is rated with a critical severity due to its remote code execution capabilities.
2
How do I fix CVE-2024-21435?
To fix CVE-2024-21435, apply the security update provided by Microsoft in KB5035853.
3
What software is affected by CVE-2024-21435?
CVE-2024-21435 affects specific versions of Windows 11, including 22H2 and 23H2 for both ARM64 and x64 architectures.
4
Is my system at risk with CVE-2024-21435?
Systems running the affected versions of Windows 11 are at risk if they have not been updated with the latest security patches.
5
What kind of attack does CVE-2024-21435 enable?
CVE-2024-21435 enables remote code execution, allowing an attacker to execute arbitrary code on vulnerable systems.