Remote Desktop Client Remote Code Execution Vulnerability
🔗 CVE IDs covered (1)
📋 Description
How could an attacker exploit this vulnerability? In the case of a Remote Desktop connection, an attacker with control of a Remote Desktop Server could trigger a remote code execution (RCE) on the RDP client machine when a victim connects to the attacking server with the vulnerable Remote Desktop Client.
🎯 Affected products43
- Remote Desktop client for Windows Desktop
- Windows 10 Version 1607 for 32-bit Systems
- Windows 10 Version 1607 for x64-based Systems
- Windows 10 Version 1809 for 32-bit Systems
- Windows 10 Version 1809 for ARM64-based Systems
- Windows 10 Version 1809 for x64-based Systems
- Windows 10 Version 1909 for 32-bit Systems
- Windows 10 Version 1909 for ARM64-based Systems
- Windows 10 Version 1909 for x64-based Systems
- Windows 10 Version 20H2 for 32-bit Systems
- Windows 10 Version 20H2 for ARM64-based Systems
- Windows 10 Version 21H1 for 32-bit Systems
- Windows 10 Version 21H1 for ARM64-based Systems
- Windows 10 Version 21H1 for x64-based Systems
- Windows 10 Version 21H2 for 32-bit Systems
- Windows 10 Version 21H2 for ARM64-based Systems
- Windows 10 Version 21H2 for x64-based Systems
- Windows 10 for 32-bit Systems
- Windows 10 for x64-based Systems
- Windows 11 version 21H2 for ARM64-based Systems
- Windows 11 version 21H2 for x64-based Systems
- Windows 7 for 32-bit Systems Service Pack 1
- Windows 7 for x64-based Systems Service Pack 1
- Windows 8.1 for 32-bit systems
- Windows 8.1 for x64-based systems
- Windows RT 8.1
- Windows Server 2008 R2 for x64-based Systems Service Pack 1
- Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)
- Windows Server 2008 for 32-bit Systems Service Pack 2
- Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation)
- +13 more not shown
✅ Remediation
KB5011503 (Security Update) — fixed build 10.0.17763.2686 KB5011485 (Security Update) — fixed build 10.0.18363.2158 KBRelease Notes (Security Update) — fixed build 1.2.2925.0 KB5011487 (Security Update) — fixed build 10.0.19043.1586 KB5011497 (Security Update) — fixed build 10.0.20348.587 KB5011580 (Security Hotpatch Update) — fixed build 10.0.20348.580 KB5011487 (Security Update) — fixed build 10.0.19042.1586 KB5011493 (Security Update) — fixed build 10.0.22000.556 KB5011487 (Security Update) — fixed build 10.0.19044.1586 KB5011491 (Security Update) — fixed build 10.0.10240.19235 KB5011495 (Security Update) — fixed build 10.0.14393.5006 KB5011552 (Monthly Rollup) — fixed build 6.1.7601.25898 KB5011529 (Security Only) — fixed build 6.1.7601.25898 KB5011564 (Monthly Rollup) — fixed build 6.3.9600.20303 KB5011560 (Security Only) — fixed build 6.3.9600.20303 KB5011564 (Monthly Rollup) — fixed build 6.3.9600.20296 KB5011534 (Monthly Rollup) — fixed build 6.0.6003.21416 KB5011525 (Security Only) — fixed build 6.0.6003.21416 KB5011535 (Monthly Rollup) — fixed build 6.2.9200.23645 KB5011527 (Security Only) — fixed build 6.2.9200.23639
🔗 References (35)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-21990
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011503
- referencehttps://support.microsoft.com/help/5011503
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011485
- referencehttps://support.microsoft.com/help/5011485
- patchhttps://docs.microsoft.com/en-us/windows-server/remote/remote-desktop-services/clients/windowsdesktop-whatsnew#updates-for-version-122925
- referencehttps://docs.microsoft.com/en-us/windows-server/remote/remote-desktop-services/clients/windowsdesktop-whatsnew
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011487
- referencehttps://support.microsoft.com/help/5011487
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011497
- referencehttps://support.microsoft.com/help/5011497
- referencehttps://support.microsoft.com/help/5011580
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011493
- referencehttps://support.microsoft.com/help/5011493
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011491
- referencehttps://support.microsoft.com/help/5011491
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011495
- referencehttps://support.microsoft.com/help/5011495
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011552
- referencehttps://support.microsoft.com/help/5011552
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011529
- referencehttps://support.microsoft.com/help/5011529
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011564
- referencehttps://support.microsoft.com/help/5011564
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011560
- referencehttps://support.microsoft.com/help/5011560
- referencehttps://support.microsoft.com/help/5010419
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011534
- referencehttps://support.microsoft.com/help/5011534
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011525
- referencehttps://support.microsoft.com/help/5011525
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011535
- referencehttps://support.microsoft.com/help/5011535
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5011527
- referencehttps://support.microsoft.com/help/5011527