Skip to content
Appaloosa Scout

Windows · Fixed build

10.0.19042.2130

MSRC advisory

61 CVEs fixed by this build, deployed across 1 Windows SKUs.

Published on
2020-11-10
SKUs covered
1
CVEs fixed
61

Windows SKUs covered by this build

The SKUs below share this MSRC build number. Deploying the corresponding KB secures all of them at once.

CISA KEV
2
Critical
7
High
54
NVD pending
0

CVEs fixed by this build

CVE Severity
CVE-2022-38028
KEV

Windows Print Spooler Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-41033
KEV

Windows COM+ Event System Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-38034

Windows Workstation Service Elevation of Privilege Vulnerability

HIGH 8.8
CVE-2022-38016

Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability

HIGH 8.8
CVE-2022-37982

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

HIGH 8.8
CVE-2022-38031

Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

HIGH 8.8
CVE-2022-38040

Microsoft ODBC Driver Remote Code Execution Vulnerability

HIGH 8.8
CVE-2022-38045

Windows Server Service Elevation of Privilege Vulnerability

HIGH 8.8
CVE-2022-37975

Windows Group Policy Elevation of Privilege Vulnerability

HIGH 8.8
CVE-2022-24504

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability

CRITICAL 8.1
CVE-2022-30198

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability

CRITICAL 8.1
CVE-2022-22035

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability

CRITICAL 8.1
CVE-2022-33634

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability

CRITICAL 8.1
CVE-2022-38047

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability

CRITICAL 8.1
CVE-2022-38000

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability

CRITICAL 8.1
CVE-2022-41081

Windows Point-to-Point Tunneling Protocol Remote Code Execution Vulnerability

CRITICAL 8.1
CVE-2022-33635

Windows GDI+ Remote Code Execution Vulnerability

HIGH 7.8
CVE-2022-37970

Windows DWM Core Library Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37986

Windows Win32k Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37987

Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-38050

Win32k Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-38051

Windows Graphics Component Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-38003

Windows Resilient File System Elevation of Privilege

HIGH 7.8
CVE-2022-37999

Windows Group Policy Preference Client Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37980

Windows DHCP Client Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37983

Microsoft DWM Core Library Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37984

Windows WLAN Service Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37988

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-38037

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37989

Windows Client Server Run-time Subsystem (CSRSS) Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-38038

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37990

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-38039

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37991

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37995

Windows Kernel Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-38044

Windows CD-ROM File System Driver Remote Code Execution Vulnerability

HIGH 7.8
CVE-2022-37997

Windows Graphics Component Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37994

Windows Group Policy Preference Client Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37993

Windows Group Policy Preference Client Elevation of Privilege Vulnerability

HIGH 7.8
CVE-2022-37998

Windows Local Session Manager (LSM) Denial of Service Vulnerability

HIGH 7.7
CVE-2022-37973

Windows Local Session Manager (LSM) Denial of Service Vulnerability

HIGH 7.7
CVE-2022-33645

Windows TCP/IP Driver Denial of Service Vulnerability

HIGH 7.5
CVE-2022-38046

Web Account Manager Information Disclosure Vulnerability

HIGH 7.5
CVE-2022-37978

Windows Active Directory Certificate Services Security Feature Bypass

HIGH 7.5
CVE-2022-38041

Windows Secure Channel Denial of Service Vulnerability

HIGH 7.5
CVE-2022-38042

Active Directory Domain Services Elevation of Privilege Vulnerability

HIGH 7.1
CVE-2022-38021

Connected User Experiences and Telemetry Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2022-38027

Windows Storage Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2022-38029

Windows ALPC Elevation of Privilege Vulnerability

HIGH 7.0
CVE-2022-38032

Windows Portable Device Enumerator Service Security Feature Bypass Vulnerability

HIGH 6.6
CVE-2022-35770

Windows NTLM Spoofing Vulnerability

HIGH 6.5
CVE-2022-37977

Local Security Authority Subsystem Service (LSASS) Denial of Service Vulnerability

HIGH 6.5
CVE-2022-38033

Windows Server Remotely Accessible Registry Keys Information Disclosure Vulnerability

HIGH 6.5
CVE-2022-37965

Windows Point-to-Point Tunneling Protocol Denial of Service Vulnerability

HIGH 5.9
CVE-2022-38026

Windows DHCP Client Information Disclosure Vulnerability

HIGH 5.5
CVE-2022-37985

Windows Graphics Component Information Disclosure Vulnerability

HIGH 5.5
CVE-2022-38043

Windows Security Support Provider Interface Information Disclosure Vulnerability

HIGH 5.5
CVE-2022-37996

Windows Kernel Memory Information Disclosure Vulnerability

HIGH 5.5
CVE-2022-37981

Windows Event Logging Service Denial of Service Vulnerability

HIGH 4.3
CVE-2022-38030

Windows USB Serial Driver Information Disclosure Vulnerability

HIGH 4.3
CVE-2022-38022

Windows Kernel Elevation of Privilege Vulnerability

HIGH 3.3