CVE-2024-43547: Windows Kerberos Information Disclosure Vulnerability
Windows Kerberos Information Disclosure Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.22221Patch KB5044343 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.2.9200.25118Patch KB5044342 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.7428Patch KB5044293 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.7601.27366Patch KB5044321 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.22918Patch KB5044306 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.25398.1189Patch KB5044288 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.26100.2033Patch KB5044284 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.20796Patch KB5044286 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22631.4317Patch KB5044285 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.5011Patch KB5044273 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22621.4317Patch KB5044285 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.5011Patch KB5044273 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22000.3260Patch KB5044280 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.2762Patch KB5044281 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.6414Patch KB5044277
Event History
Frequently Asked Questions
What is the severity of CVE-2024-43547?
CVE-2024-43547 has been classified as a medium severity vulnerability affecting Windows Kerberos.
How do I fix CVE-2024-43547?
To fix CVE-2024-43547, install the relevant security patches provided by Microsoft for the affected Windows versions.
What versions of Windows are affected by CVE-2024-43547?
CVE-2024-43547 affects various Windows versions including Windows 10, Windows 11, and Windows Server 2008 R2.
Can exploiting CVE-2024-43547 lead to sensitive information disclosure?
Yes, exploiting CVE-2024-43547 could potentially lead to the disclosure of sensitive information due to improper handling of Kerberos tickets.
Is there a workaround for CVE-2024-43547 if immediate patching is not possible?
Currently, there are no known workarounds for CVE-2024-43547, and applying the patch is the recommended mitigation.