CVE-2023-36406HighCVSS 5.5

Windows Hyper-V Information Disclosure Vulnerability

Published
November 14, 2023
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

What type of information could be disclosed by this vulnerability? The type of information that could be disclosed if an attacker successfully exploited this vulnerability is Kernel memory read - unintentional read access to memory contents in kernel space from a user mode process.

🎯 Affected products9

  • Windows 11 Version 22H2 for ARM64-based Systems
  • Windows 11 Version 22H2 for x64-based Systems
  • Windows 11 Version 23H2 for ARM64-based Systems
  • Windows 11 Version 23H2 for x64-based Systems
  • Windows 11 version 21H2 for ARM64-based Systems
  • Windows 11 version 21H2 for x64-based Systems
  • Windows Server 2022
  • Windows Server 2022 (Server Core installation)
  • Windows Server 2022, 23H2 Edition (Server Core installation)

✅ Remediation

KB5032198 (Security Update) — fixed build 10.0.20348.2113 KB5032304 (SecurityHotpatchUpdate) — fixed build 10.0.20348.2091 KB5032192 (Security Update) — fixed build 10.0.22000.2600 KB5032190 (Security Update) — fixed build 10.0.22621.2715 KB5032190 (Security Update) — fixed build 10.0.22631.2715 KB5032202 (Security Update) — fixed build 10.0.25398.531

🔗 References (11)