QID 91967

Date Published: 2022-12-14

QID 91967: Raw Image Extension Remote Code Execution Vulnerability Updates in December 2022

For all supported versions of Windows 10, the secure version is v2.0.32791.0 and later. For Windows 11 operating systems, the secure version is v2.1.32791.0 and later.
QID detection Logic:
The gets the version of RawImageExtension by querying wmi class Win32_InstalledStoreProgram.

An attacker who successfully exploited this vulnerability can compromise confidentiality, integrity and availability of the system

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as Medium - 4.6 severity.
  • Solution
    Users are advised to check CVE-2022-44687 for further details.

    CVEs related to QID 91967

    Software Advisories
    Advisory ID Software Component Link
    CVE-2022-44687 URL Logo msrc.microsoft.com/update-guide/vulnerability/CVE-2022-44687