QID 91789
Date Published: 2021-07-14
QID 91789: Microsoft Windows Codecs Library Raw Image Extension Remote Code Execution (RCE) Vulnerability
A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory.
Affected Product:
"RawImageExtension " or "RawImageExtension from Device Manufacturer" media codec before and including version 1.0.41311.0
QID detection Logic:
The gets the version of RawImageExtension by querying wmi class Win32_InstalledStoreProgram.
An attacker who successfully exploited this vulnerability could compromise confidentiality, integrity and availability of the system.
Solution
Users are advised to check CVE-2021-34521
Vendor References
- CVE-2021-34521 -
msrc.microsoft.com/update-guide/vulnerability/CVE-2021-34521
CVEs related to QID 91789
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2021-34521 |
|