CVE-2021-38635

Description

Windows Redirected Drive Buffering SubSystem Driver Information Disclosure Vulnerability

Risk Information

Base Score
5.4
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C
EPSS Score
Exploitation Probability
0.605

Associated Vulnerability

VulnerabilityOS Platform
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 21H1 for x86-based Systems (KB5005565)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 21H1 for x64-based Systems (KB5005565)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server, version 2004 for x64-based Systems (KB5005565)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 2004 for x86-based Systems (KB5005565)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 2004 for x64-based Systems (KB5005565)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 20H2 for x86-based Systems (KB5005565)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 20H2 for x64-based Systems (KB5005565)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 1909 for x86-based Systems (KB5005566)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 1909 for x64-based Systems (KB5005566)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 1809 for x64-based Systems (KB5005568)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server 2019 for x64-based Systems (KB5005568)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 1809 for x86-based Systems (KB5005568)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 1507 for x86-based Systems (KB5005569)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 1507 for x64-based Systems (KB5005569)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server 2016 for x64-based Systems (KB5005573)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 1607 for x86-based Systems (KB5005573)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 10 Version 1607 for x64-based Systems (KB5005573)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server 2008 for x86-based Systems (KB5005606) (ESU)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server 2008 for x64-based Systems (KB5005606) (ESU)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server 2012 for x64-based Systems (KB5005607)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB5005613)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 8.1 for x86-based Systems (KB5005613)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 8.1 for x64-based Systems (KB5005613)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 7 for x86-based Systems (KB5005615) (ESU)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server 2008 R2 for x64-based Systems (KB5005615) (ESU)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 7 for x64-based Systems (KB5005615) (ESU)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server 2012 for x64-based Systems (KB5005623)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB5005627)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 8.1 for x64-based Systems (KB5005627)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 8.1 for x86-based Systems (KB5005627)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server 2008 R2 for x64-based Systems (KB5005633) (ESU)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 7 for x86-based Systems (KB5005633) (ESU)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 7 for x64-based Systems (KB5005633) (ESU)Windows
Windows Common Log File System Driver Elevation of Privilege Vulnerability for Windows Server 2008 for x86-based Systems (KB5005618) (ESU)Windows
Windows Common Log File System Driver Elevation of Privilege Vulnerability for Windows Server 2008 for x64-based Systems (KB5005618) (ESU)Windows
Microsoft MSHTML Remote Code Execution Vulnerability for Microsoft server operating system version 21H2 for x64-based Systems (KB5005575)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-320712021-09 Cumulative Update for Windows 10 Version 21H1 for x86-based Systems (KB5005565) (CVE-2021-40444)
PATCH-320722021-09 Cumulative Update for Windows 10 Version 21H1 for x64-based Systems (KB5005565) (CVE-2021-40444)
PATCH-320732021-09 Cumulative Update for Windows Server, version 2004 for x64-based Systems (KB5005565) (CVE-2021-40444)
PATCH-320742021-09 Cumulative Update for Windows 10 Version 2004 for x86-based Systems (KB5005565) (CVE-2021-40444)
PATCH-320752021-09 Cumulative Update for Windows 10 Version 2004 for x64-based Systems (KB5005565) (CVE-2021-40444)
PATCH-320762021-09 Cumulative Update for Windows 10 Version 20H2 for x86-based Systems (KB5005565) (CVE-2021-40444)
PATCH-320772021-09 Cumulative Update for Windows 10 Version 20H2 for x64-based Systems (KB5005565) (CVE-2021-40444)
PATCH-320782021-09 Cumulative Update for Windows 10 Version 1909 for x86-based Systems (KB5005566) (CVE-2021-40444)
PATCH-320792021-09 Cumulative Update for Windows 10 Version 1909 for x64-based Systems (KB5005566) (CVE-2021-40444)
PATCH-320802021-09 Cumulative Update for Windows 10 Version 1809 for x64-based Systems (KB5005568) (CVE-2021-40444)
PATCH-320812021-09 Cumulative Update for Windows Server 2019 for x64-based Systems (KB5005568) (CVE-2021-40444)
PATCH-320822021-09 Cumulative Update for Windows 10 Version 1809 for x86-based Systems (KB5005568) (CVE-2021-40444)
PATCH-320672021-09 Cumulative Update for Windows 10 Version 1507 for x86-based Systems (KB5005569) (CVE-2021-40444)
PATCH-320682021-09 Cumulative Update for Windows 10 Version 1507 for x64-based Systems (KB5005569) (CVE-2021-40444)
PATCH-320642021-09 Cumulative Update for Windows Server 2016 for x64-based Systems (KB5005573) (CVE-2021-40444)
PATCH-320652021-09 Cumulative Update for Windows 10 Version 1607 for x86-based Systems (KB5005573) (CVE-2021-40444)
PATCH-320662021-09 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB5005573) (CVE-2021-40444)
PATCH-320622021-09 Security Monthly Quality Rollup for Windows Server 2008 for x86-based Systems (KB5005606) (ESU) (CVE-2021-36968) (CVE-2021-40444)
PATCH-320632021-09 Security Monthly Quality Rollup for Windows Server 2008 for x64-based Systems (KB5005606) (ESU) (CVE-2021-36968) (CVE-2021-40444)
PATCH-320402021-09 Security Only Quality Update for Windows Server 2012 for x64-based Systems (KB5005607)
PATCH-320552021-09 Security Monthly Quality Rollup for Windows Server 2012 R2 for x64-based Systems (KB5005613) (CVE-2021-40444)
PATCH-320562021-09 Security Monthly Quality Rollup for Windows 8.1 for x86-based Systems (KB5005613) (CVE-2021-40444)
PATCH-320572021-09 Security Monthly Quality Rollup for Windows 8.1 for x64-based Systems (KB5005613) (CVE-2021-40444)
PATCH-320412021-09 Security Only Quality Update for Windows 7 for x86-based Systems (KB5005615) (ESU) (CVE-2021-36968)
PATCH-320422021-09 Security Only Quality Update for Windows Server 2008 R2 for x64-based Systems (KB5005615) (ESU) (CVE-2021-36968)
PATCH-320432021-09 Security Only Quality Update for Windows 7 for x64-based Systems (KB5005615) (ESU) (CVE-2021-36968)
PATCH-320582021-09 Security Monthly Quality Rollup for Windows Server 2012 for x64-based Systems (KB5005623) (CVE-2021-40444)
PATCH-320372021-09 Security Only Quality Update for Windows Server 2012 R2 for x64-based Systems (KB5005627) (CVE-2021-40444)
PATCH-320382021-09 Security Only Quality Update for Windows 8.1 for x64-based Systems (KB5005627) (CVE-2021-40444)
PATCH-320392021-09 Security Only Quality Update for Windows 8.1 for x86-based Systems (KB5005627) (CVE-2021-40444)
PATCH-320592021-09 Security Monthly Quality Rollup for Windows Server 2008 R2 for x64-based Systems (KB5005633) (ESU) (CVE-2021-36968) (CVE-2021-40444)
PATCH-320602021-09 Security Monthly Quality Rollup for Windows 7 for x86-based Systems (KB5005633) (ESU) (CVE-2021-36968) (CVE-2021-40444)
PATCH-320612021-09 Security Monthly Quality Rollup for Windows 7 for x64-based Systems (KB5005633) (ESU) (CVE-2021-36968) (CVE-2021-40444)
PATCH-320442021-09 Security Only Quality Update for Windows Server 2008 for x86-based Systems (KB5005618) (ESU) (CVE-2021-36968)
PATCH-320452021-09 Security Only Quality Update for Windows Server 2008 for x64-based Systems (KB5005618) (ESU) (CVE-2021-36968)
PATCH-320832021-09 Cumulative Update for Microsoft server operating system version 21H2 for x64-based Systems (KB5005575) (CVE-2021-40444)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234