Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.832360
Category:Windows : Microsoft Bulletins
Title:Microsoft Windows Multiple Vulnerabilities (KB5017328)
Summary:This host is missing an important security; update according to Microsoft KB5017328
Description:Summary:
This host is missing an important security
update according to Microsoft KB5017328

Vulnerability Insight:
Multiple flaws exist due to:

- SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Remote Code Execution Vulnerability.

- Windows Fax Service Remote Code Execution Vulnerability.

- Microsoft ODBC Driver Remote Code Execution Vulnerability.

For more information about the vulnerabilities refer to Reference links.

Vulnerability Impact:
Successful exploitation would allow an
attacker to elevate privileges, execute arbitrary commands, bypass security
feature, disclose information and conduct DoS attacks.

Affected Software/OS:
Microsoft Windows 11 version 21H2 for x64-based Systems.

Solution:
The vendor has released updates. Please see
the references for more information.

CVSS Score:
1.9

CVSS Vector:
AV:L/AC:M/Au:N/C:P/I:N/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2022-35803
Windows Common Log File System Driver Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-35803
Common Vulnerability Exposure (CVE) ID: CVE-2022-37958
SPNEGO Extended Negotiation (NEGOEX) Security Mechanism Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37958
Common Vulnerability Exposure (CVE) ID: CVE-2022-38006
Windows Graphics Component Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-38006
Common Vulnerability Exposure (CVE) ID: CVE-2022-38005
Windows Print Spooler Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-38005
Common Vulnerability Exposure (CVE) ID: CVE-2022-37957
Windows Kernel Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37957
Common Vulnerability Exposure (CVE) ID: CVE-2022-38004
Windows Fax Service Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-38004
Common Vulnerability Exposure (CVE) ID: CVE-2022-37956
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37956
Common Vulnerability Exposure (CVE) ID: CVE-2022-37955
Windows Group Policy Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37955
Common Vulnerability Exposure (CVE) ID: CVE-2022-37954
DirectX Graphics Kernel Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37954
Common Vulnerability Exposure (CVE) ID: CVE-2022-34734
Microsoft ODBC Driver Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34734
Common Vulnerability Exposure (CVE) ID: CVE-2022-34733
Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34733
Common Vulnerability Exposure (CVE) ID: CVE-2022-34732
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34732
Common Vulnerability Exposure (CVE) ID: CVE-2022-34731
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34731
Common Vulnerability Exposure (CVE) ID: CVE-2022-34730
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34730
Common Vulnerability Exposure (CVE) ID: CVE-2022-34729
Windows GDI Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34729
Common Vulnerability Exposure (CVE) ID: CVE-2022-34728
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34728
Common Vulnerability Exposure (CVE) ID: CVE-2022-34727
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34727
Common Vulnerability Exposure (CVE) ID: CVE-2022-34726
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34726
Common Vulnerability Exposure (CVE) ID: CVE-2022-34725
Windows ALPC Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34725
Common Vulnerability Exposure (CVE) ID: CVE-2022-34723
Windows DPAPI (Data Protection Application Programming Interface) Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34723
Common Vulnerability Exposure (CVE) ID: CVE-2022-34722
Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34722
Common Vulnerability Exposure (CVE) ID: CVE-2022-34721
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34721
Common Vulnerability Exposure (CVE) ID: CVE-2022-34720
Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34720
Common Vulnerability Exposure (CVE) ID: CVE-2022-34719
Windows Distributed File System (DFS) Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34719
Common Vulnerability Exposure (CVE) ID: CVE-2022-34718
Windows TCP/IP Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-34718
Common Vulnerability Exposure (CVE) ID: CVE-2022-35841
Windows Enterprise App Management Service Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-35841
Common Vulnerability Exposure (CVE) ID: CVE-2022-35840
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-35840
Common Vulnerability Exposure (CVE) ID: CVE-2022-35838
HTTP V3 Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-35838
Common Vulnerability Exposure (CVE) ID: CVE-2022-35837
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-35837
Common Vulnerability Exposure (CVE) ID: CVE-2022-35836
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-35836
Common Vulnerability Exposure (CVE) ID: CVE-2022-35835
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-35835
Common Vulnerability Exposure (CVE) ID: CVE-2022-35834
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-35834
Common Vulnerability Exposure (CVE) ID: CVE-2022-35833
Windows Secure Channel Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-35833
Common Vulnerability Exposure (CVE) ID: CVE-2022-35832
Windows Event Tracing Denial of Service Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-35832
Common Vulnerability Exposure (CVE) ID: CVE-2022-35831
Windows Remote Access Connection Manager Information Disclosure Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-35831
Common Vulnerability Exposure (CVE) ID: CVE-2022-30200
Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-30200
Common Vulnerability Exposure (CVE) ID: CVE-2022-30196
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-30196
Common Vulnerability Exposure (CVE) ID: CVE-2022-30170
Windows Credential Roaming Service Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-30170
Common Vulnerability Exposure (CVE) ID: CVE-2022-23960
Debian Security Information: DSA-5173 (Google Search)
https://www.debian.org/security/2022/dsa-5173
https://developer.arm.com/support/arm-security-updates
https://lists.debian.org/debian-lts-announce/2022/07/msg00000.html
http://www.openwall.com/lists/oss-security/2022/03/18/2
Common Vulnerability Exposure (CVE) ID: CVE-2022-37969
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-37969
CopyrightCopyright (C) 2023 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.