Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability
🔗 CVE IDs covered (1)
📋 Description
How could an attacker exploit this vulnerability? An unauthenticated attacker could send a specially crafted protocol message to a Routing and Remote Access Service (RRAS) server, which could lead to remote code execution (RCE) on the RAS server machine.
According to the CVSS metric, the attack complexity is high (AC:H). What does that mean for this vulnerability? Successful exploitation of this vulnerability requires an attacker to win a race condition.
🎯 Affected products40
- Windows 10 Version 1607 for 32-bit Systems
- Windows 10 Version 1607 for x64-based Systems
- Windows 10 Version 1809 for 32-bit Systems
- Windows 10 Version 1809 for ARM64-based Systems
- Windows 10 Version 1809 for x64-based Systems
- Windows 10 Version 20H2 for 32-bit Systems
- Windows 10 Version 20H2 for ARM64-based Systems
- Windows 10 Version 21H2 for 32-bit Systems
- Windows 10 Version 21H2 for ARM64-based Systems
- Windows 10 Version 21H2 for x64-based Systems
- Windows 10 Version 22H2 for 32-bit Systems
- Windows 10 Version 22H2 for ARM64-based Systems
- Windows 10 Version 22H2 for x64-based Systems
- Windows 10 for 32-bit Systems
- Windows 10 for x64-based Systems
- Windows 11 Version 22H2 for ARM64-based Systems
- Windows 11 Version 22H2 for x64-based Systems
- Windows 11 version 21H2 for ARM64-based Systems
- Windows 11 version 21H2 for x64-based Systems
- Windows 7 for 32-bit Systems Service Pack 1
- Windows 7 for x64-based Systems Service Pack 1
- Windows 8.1 for 32-bit systems
- Windows 8.1 for x64-based systems
- Windows RT 8.1
- Windows Server 2008 R2 for x64-based Systems Service Pack 1
- Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation)
- Windows Server 2008 for 32-bit Systems Service Pack 2
- Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation)
- Windows Server 2008 for x64-based Systems Service Pack 2
- Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation)
- +10 more not shown
✅ Remediation
KB5022286 (Security Update) — fixed build 10.0.17763.3887 KB5022291 (Security Update) — fixed build 10.0.20348.1487 KB5022282 (Security Update) — fixed build 10.0.19042.2486 KB5022287 (Security Update) — fixed build 10.0.22000.1455 KB5022282 (Security Update) — fixed build 10.0.19044.2486 KB5022303 (Security Update) — fixed build 10.0.22621.1105 KB5022282 (Security Update) — fixed build 10.0.19045.2486 KB5022297 (Security Update) — fixed build 10.0.10240.19685 KB5022289 (Security Update) — fixed build 10.0.14393.5648 KB5022338 (Monthly Rollup) — fixed build 6.1.7601.26321 KB5022339 (Security Only) — fixed build 6.1.7601.26321 KB5022352 (Monthly Rollup) — fixed build 6.3.9600.20778 KB5022346 (Security Only) — fixed build 6.3.9600.20778 KB5022340 (Monthly Rollup) — fixed build 6.0.6003.21872 KB5022353 (Security Only) — fixed build 6.0.6003.21872 KB5022348 (Monthly Rollup) — fixed build 6.2.9200.24075 KB5022343 (Security Only) — fixed build 6.2.9200.24075
🔗 References (27)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-21555
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022286
- referencehttps://support.microsoft.com/help/5022286
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022291
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022282
- referencehttps://support.microsoft.com/help/5022282
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022287
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022303
- referencehttps://support.microsoft.com/help/5022303
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022297
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022289
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022338
- referencehttps://support.microsoft.com/help/5022338
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022339
- referencehttps://support.microsoft.com/help/5022339
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022352
- referencehttps://support.microsoft.com/help/5022352
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022346
- referencehttps://support.microsoft.com/help/5022346
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022340
- referencehttps://support.microsoft.com/help/5022340
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022353
- referencehttps://support.microsoft.com/help/5022353
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022348
- referencehttps://support.microsoft.com/help/5022348
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB5022343
- referencehttps://support.microsoft.com/help/5022343