2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2022-26934" ,
"sourceIdentifier" : "secure@microsoft.com" ,
"published" : "2022-05-10T21:15:10.580" ,
2025-01-02 21:03:45 +00:00
"lastModified" : "2025-01-02T19:16:06.177" ,
2023-12-20 23:00:29 +00:00
"vulnStatus" : "Modified" ,
2024-12-08 03:06:42 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
2023-12-20 23:00:29 +00:00
"value" : "Windows Graphics Component Information Disclosure Vulnerability"
2023-04-24 12:24:31 +02:00
} ,
{
"lang" : "es" ,
"value" : "Una vulnerabilidad de Divulgaci\u00f3n de Informaci\u00f3n de Windows Graphics Component. Este ID de CVE es diferente de CVE-2022-22011, CVE-2022-29112"
}
] ,
"metrics" : {
"cvssMetricV31" : [
{
2024-11-23 15:12:23 +00:00
"source" : "secure@microsoft.com" ,
"type" : "Secondary" ,
2023-04-24 12:24:31 +02:00
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" ,
2024-11-23 15:12:23 +00:00
"baseScore" : 6.5 ,
"baseSeverity" : "MEDIUM" ,
2023-04-24 12:24:31 +02:00
"attackVector" : "NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "REQUIRED" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "NONE" ,
2024-11-23 15:12:23 +00:00
"availabilityImpact" : "NONE"
2023-04-24 12:24:31 +02:00
} ,
"exploitabilityScore" : 2.8 ,
"impactScore" : 3.6
} ,
{
2024-11-23 15:12:23 +00:00
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
2023-04-24 12:24:31 +02:00
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N" ,
2024-11-23 15:12:23 +00:00
"baseScore" : 6.5 ,
"baseSeverity" : "MEDIUM" ,
2023-04-24 12:24:31 +02:00
"attackVector" : "NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "REQUIRED" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "HIGH" ,
"integrityImpact" : "NONE" ,
2024-11-23 15:12:23 +00:00
"availabilityImpact" : "NONE"
2023-04-24 12:24:31 +02:00
} ,
"exploitabilityScore" : 2.8 ,
"impactScore" : 3.6
}
] ,
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:N/AC:M/Au:N/C:P/I:N/A:N" ,
2024-11-23 15:12:23 +00:00
"baseScore" : 4.3 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "NETWORK" ,
"accessComplexity" : "MEDIUM" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "PARTIAL" ,
"integrityImpact" : "NONE" ,
2024-11-23 15:12:23 +00:00
"availabilityImpact" : "NONE"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "MEDIUM" ,
"exploitabilityScore" : 8.6 ,
"impactScore" : 2.9 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : true
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-noinfo"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:microsoft:365_apps:-:*:*:*:enterprise:*:*:*" ,
"matchCriteriaId" : "40C15EDD-98D4-4D06-BA06-21AE0F33C72D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:microsoft:office:2019:*:*:*:*:macos:*:*" ,
"matchCriteriaId" : "40961B9E-80B6-42E0-A876-58B3CE056E4E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:a:microsoft:office:2021:*:*:*:ltsc:macos:*:*" ,
"matchCriteriaId" : "0DF36AFA-B48C-4423-AD1C-78EEFF85EF2C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:x64:*" ,
"versionEndExcluding" : "10.0.10240.19297" ,
"matchCriteriaId" : "E737E372-FC11-48CF-BBCF-AE87076FC02E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_10_1507:*:*:*:*:*:*:x86:*" ,
"versionEndExcluding" : "10.0.10240.19297" ,
"matchCriteriaId" : "8BD66F39-8504-4AC6-B5AE-A33E89B45A9F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x64:*" ,
"versionEndExcluding" : "10.0.14393.5125" ,
"matchCriteriaId" : "B16BE2D6-5D87-42E8-A4E9-B75FABC06BCC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:x86:*" ,
"versionEndExcluding" : "10.0.14393.5125" ,
"matchCriteriaId" : "E785684A-AA37-4EFE-BBA2-F504C2E0339C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "10.0.17763.2928" ,
"matchCriteriaId" : "4E92CB6A-8CC1-4546-8717-6762B9DF3E5B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_10_1809:10.0.17763.2928:*:*:*:*:*:x86:*" ,
"matchCriteriaId" : "B07AD3C8-BA7D-45DB-9D75-50F90FF4B1B9"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_10_1909:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "10.0.18363.2274" ,
"matchCriteriaId" : "D85D55B3-B0C8-402A-A6A3-E8E0F0465B72"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_10_20h2:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "10.0.19042.1706" ,
"matchCriteriaId" : "2DD19ACE-EDC0-42FE-8F1A-4BD869BCEF27"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_10_21h1:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "10.0.19043.1706" ,
"matchCriteriaId" : "876220BB-7040-4EEA-AB26-2FC43ADE08C0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_10_21h2:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "10.0.19044.1706" ,
"matchCriteriaId" : "93FF0E05-D7EE-425E-9C5F-2D0AB8C98130"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_11_21h2:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "10.0.22000.675" ,
"matchCriteriaId" : "98235A5F-1201-4367-9D6E-D30168667712"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:*:*" ,
"matchCriteriaId" : "C2B1C231-DE19-4B8F-A4AA-5B3A65276E46"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_8.1:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E93068DB-549B-45AB-8E5C-00EB5D8B5CF8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_rt_8.1:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C6CE5198-C498-4672-AF4C-77AB4BE06C5C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_server:2022:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "BE257836-4F4D-4352-8293-B9CAD34F8794"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*" ,
"matchCriteriaId" : "AF07A81D-12E5-4B1D-BFF9-C8D08C32FF4F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_server_2008:sp2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "66CAFDB7-9D41-4E67-AB83-5EB104551FF5"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_server_2012:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "A7DF96F8-BA6A-4780-9CA3-F719B3F81074"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DB18C4CE-5917-401E-ACF7-2747084FD36E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "041FF8BA-0B12-4A1F-B4BF-9C4F33B7C1E7"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_server_2016:20h2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "4A190388-AA82-4504-9D5A-624F23268C9F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DB79EE26-FC32-417D-A49C-A1A63165A968"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:microsoft:windows_server_2022:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "821614DD-37DD-44E2-A8A4-FE8D23A33C3C"
}
]
}
]
}
] ,
"references" : [
{
2025-01-02 21:03:45 +00:00
"url" : "https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26934" ,
"source" : "secure@microsoft.com"
2024-11-23 15:12:23 +00:00
} ,
{
"url" : "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-26934" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Patch" ,
"Vendor Advisory"
]
2023-04-24 12:24:31 +02:00
}
]
}