Patch Tuesday Archive
Patch Tuesday August 2022
Total CVEs
123
Critical
17
Important
104
Exploited
1
Publicly Disclosed
2
All CVEs this month 123
| CVE | Title | Severity | CVSS | Product | Exploited | Disclosed | Diffed |
|---|---|---|---|---|---|---|---|
| CVE-2022-30133 | Windows Point-to-Point Protocol (PPP) Remote Code Execution Vulnerability | Critical | 9.8 |
Windows Point-to-Point Tunneling Protocol | - | - | - |
| CVE-2022-30144 | Windows Bluetooth Service Remote Code Execution Vulnerability | Important | 7.5 |
Windows Bluetooth Service | - | - | - |
| CVE-2022-30175 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | Important | 7.8 |
Azure Real Time Operating System | - | - | - |
| CVE-2022-30176 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | Important | 7.8 |
Azure Real Time Operating System | - | - | - |
| CVE-2022-30194 | Windows WebBrowser Control Remote Code Execution Vulnerability | Important | 7.5 |
Windows WebBrowser Control | - | - | - |
| CVE-2022-30197 | Windows Kernel Information Disclosure Vulnerability | Important | 5.5 |
Windows Kernel | - | - | - |
| CVE-2022-33636 | Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability | Moderate | 8.3 |
Microsoft Edge (Chromium-based) | - | - | - |
| CVE-2022-33640 | System Center Operations Manager: Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability | Important | 7.8 |
System Center Operations Manager | - | - | - |
| CVE-2022-33646 | Azure Batch Node Agent Elevation of Privilege Vulnerability | Critical | 7 |
Azure Batch Node Agent | - | - | - |
| CVE-2022-33648 | Microsoft Excel Remote Code Execution Vulnerability | Important | 7.8 |
Microsoft Office Excel | - | - | - |
| CVE-2022-33649 | Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability | Important | 9.6 |
Microsoft Edge (Chromium-based) | - | - | - |
| CVE-2022-33670 | Windows Partition Management Driver Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Partition Management Driver | - | - | - |
| CVE-2022-34685 | Azure RTOS GUIX Studio Information Disclosure Vulnerability | Important | 5.5 |
Azure Real Time Operating System | - | - | - |
| CVE-2022-34686 | Azure RTOS GUIX Studio Information Disclosure Vulnerability | Important | 5.5 |
Azure Real Time Operating System | - | - | - |
| CVE-2022-34687 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | Important | 7.8 |
Azure Real Time Operating System | - | - | - |
| CVE-2022-34691 | Active Directory Domain Services Elevation of Privilege Vulnerability | Critical | 8.8 |
Active Directory Domain Services | - | - | - |
| CVE-2022-34696 | Windows Hyper-V Remote Code Execution Vulnerability | Critical | 7.8 |
Role: Windows Hyper-V | - | - | - |
| CVE-2022-34699 | Windows Win32k Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Win32K | - | - | - |
| CVE-2022-34703 | Windows Partition Management Driver Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Partition Management Driver | - | - | - |
| CVE-2022-34706 | Windows Local Security Authority (LSA) Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Local Security Authority (LSA) | - | - | - |
| CVE-2022-34707 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2022-34708 | Windows Kernel Information Disclosure Vulnerability | Important | 5.5 |
Windows Kernel | - | - | - |
| CVE-2022-34709 | Windows Defender Credential Guard Security Feature Bypass Vulnerability | Important | 6 |
Windows Defender Credential Guard | - | - | - |
| CVE-2022-34710 | Windows Defender Credential Guard Information Disclosure Vulnerability | Important | 5.5 |
Windows Defender Credential Guard | - | - | - |
| CVE-2022-34711 | Windows Defender Credential Guard Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Defender Credential Guard | - | - | - |
| CVE-2022-34712 | Windows Defender Credential Guard Information Disclosure Vulnerability | Important | 5.5 |
Windows Defender Credential Guard | - | - | - |
| CVE-2022-34713 | Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability | Important | 7.8 |
Microsoft Windows Support Diagnostic Tool (MSDT) | Yes | Yes | - |
| CVE-2022-34714 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | Critical | 8.1 |
Windows Secure Socket Tunneling Protocol (SSTP) | - | - | - |
| CVE-2022-34715 | Windows Network File System Remote Code Execution Vulnerability | Important | 9.8 |
Windows Network File System | - | - | - |
| CVE-2022-35742 | Microsoft Outlook Denial of Service Vulnerability | Important | 7.5 |
Microsoft Office Outlook | - | - | - |
| CVE-2022-35743 | Microsoft Windows Support Diagnostic Tool (MSDT) Remote Code Execution Vulnerability | Important | 7.8 |
Microsoft Windows Support Diagnostic Tool (MSDT) | - | - | - |
| CVE-2022-35744 | Windows Point-to-Point Protocol (PPP) Remote Code Execution Vulnerability | Critical | 9.8 |
Windows Point-to-Point Tunneling Protocol | - | - | - |
| CVE-2022-35745 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | Critical | 8.1 |
Windows Secure Socket Tunneling Protocol (SSTP) | - | - | - |
| CVE-2022-35746 | Windows Digital Media Receiver Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Digital Media | - | - | - |
| CVE-2022-35747 | Windows Point-to-Point Protocol (PPP) Denial of Service Vulnerability | Important | 5.9 |
Windows Point-to-Point Tunneling Protocol | - | - | - |
| CVE-2022-35748 | HTTP.sys Denial of Service Vulnerability | Important | 7.5 |
Windows Internet Information Services | - | - | - |
| CVE-2022-35749 | Windows Digital Media Receiver Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Digital Media | - | - | - |
| CVE-2022-35750 | Win32k Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Canonical Display Driver | - | - | - |
| CVE-2022-35751 | Windows Hyper-V Elevation of Privilege Vulnerability | Important | 7.8 |
Role: Windows Hyper-V | - | - | - |
| CVE-2022-35752 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | Critical | 8.1 |
Remote Access Service Point-to-Point Tunneling Protocol | - | - | - |
| CVE-2022-35753 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | Critical | 8.1 |
Remote Access Service Point-to-Point Tunneling Protocol | - | - | - |
| CVE-2022-35754 | Unified Write Filter Elevation of Privilege Vulnerability | Important | 6.7 |
Windows Unified Write Filter | - | - | - |
| CVE-2022-35755 | Windows Print Spooler Elevation of Privilege Vulnerability | Important | 7.3 |
Windows Print Spooler Components | - | - | - |
| CVE-2022-35756 | Windows Kerberos Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kerberos | - | - | - |
| CVE-2022-35757 | Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability | Important | 7.3 |
Windows Cloud Files Mini Filter Driver | - | - | - |
| CVE-2022-35758 | Windows Kernel Memory Information Disclosure Vulnerability | Important | 5.5 |
Windows Kernel | - | - | - |
| CVE-2022-35759 | Windows Local Security Authority (LSA) Denial of Service Vulnerability | Important | 6.5 |
Windows Local Security Authority (LSA) | - | - | - |
| CVE-2022-35760 | Microsoft ATA Port Driver Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft ATA Port Driver | - | - | - |
| CVE-2022-35761 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2022-35762 | Storage Spaces Direct Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Storage Spaces Direct | - | - | - |
| CVE-2022-35763 | Storage Spaces Direct Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Storage Spaces Direct | - | - | - |
| CVE-2022-35764 | Storage Spaces Direct Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Storage Spaces Direct | - | - | - |
| CVE-2022-35765 | Storage Spaces Direct Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Storage Spaces Direct | - | - | - |
| CVE-2022-35792 | Storage Spaces Direct Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Storage Spaces Direct | - | - | - |
| CVE-2022-35796 | Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability | Low | 7.5 |
Microsoft Edge (Chromium-based) | - | - | - |
| CVE-2022-35773 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | Important | 7.8 |
Azure Real Time Operating System | - | - | - |
| CVE-2022-35776 | Azure Site Recovery Denial of Service Vulnerability | Important | 6.2 |
Azure Site Recovery | - | - | - |
| CVE-2022-35802 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 8.1 |
Azure Site Recovery | - | - | - |
| CVE-2022-35804 | SMB Client and Server Remote Code Execution Vulnerability | Critical | 8.8 |
Windows Kernel | - | - | - |
| CVE-2022-35780 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35781 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-21979 | Microsoft Exchange Server Information Disclosure Vulnerability | Important | 4.8 |
Microsoft Exchange Server | - | - | - |
| CVE-2022-21980 | Microsoft Exchange Server Elevation of Privilege Vulnerability | Critical | 8 |
Microsoft Exchange Server | - | - | - |
| CVE-2022-24516 | Microsoft Exchange Server Elevation of Privilege Vulnerability | Critical | 8 |
Microsoft Exchange Server | - | - | - |
| CVE-2022-24477 | Microsoft Exchange Server Elevation of Privilege Vulnerability | Critical | 8 |
Microsoft Exchange Server | - | - | - |
| CVE-2022-30134 | Microsoft Exchange Server Information Disclosure Vulnerability | Important | 6.5 |
Microsoft Exchange Server | - | Yes | - |
| CVE-2022-33631 | Microsoft Excel Security Feature Bypass Vulnerability | Important | 7.3 |
Microsoft Office Excel | - | - | - |
| CVE-2022-34690 | Windows Fax Service Elevation of Privilege Vulnerability | Important | 7.1 |
Role: Windows Fax Service | - | - | - |
| CVE-2022-34692 | Microsoft Exchange Server Information Disclosure Vulnerability | Important | 5.3 |
Microsoft Exchange Server | - | - | - |
| CVE-2022-34701 | Windows Secure Socket Tunneling Protocol (SSTP) Denial of Service Vulnerability | Important | 7.5 |
Windows Secure Socket Tunneling Protocol (SSTP) | - | - | - |
| CVE-2022-34702 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | Critical | 8.1 |
Windows Secure Socket Tunneling Protocol (SSTP) | - | - | - |
| CVE-2022-34704 | Windows Defender Credential Guard Information Disclosure Vulnerability | Important | 4.7 |
Windows Defender Credential Guard | - | - | - |
| CVE-2022-34705 | Windows Defender Credential Guard Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Defender Credential Guard | - | - | - |
| CVE-2022-34716 | .NET Spoofing Vulnerability | Important | 5.9 |
.NET Core | - | - | - |
| CVE-2022-34717 | Microsoft Office Remote Code Execution Vulnerability | Important | 8.8 |
Microsoft Office | - | - | - |
| CVE-2022-35766 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | Critical | 8.1 |
Windows Secure Socket Tunneling Protocol (SSTP) | - | - | - |
| CVE-2022-35767 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | Critical | 8.1 |
Windows Secure Socket Tunneling Protocol (SSTP) | - | - | - |
| CVE-2022-35793 | Windows Print Spooler Elevation of Privilege Vulnerability | Important | 7.3 |
Windows Print Spooler Components | - | - | - |
| CVE-2022-35768 | Windows Kernel Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Kernel | - | - | - |
| CVE-2022-35794 | Windows Secure Socket Tunneling Protocol (SSTP) Remote Code Execution Vulnerability | Critical | 8.1 |
Windows Secure Socket Tunneling Protocol (SSTP) | - | - | - |
| CVE-2022-35769 | Windows Point-to-Point Protocol (PPP) Denial of Service Vulnerability | Important | 7.5 |
Remote Access Service Point-to-Point Tunneling Protocol | - | - | - |
| CVE-2022-35795 | Windows Error Reporting Service Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Error Reporting | - | - | - |
| CVE-2022-35771 | Windows Defender Credential Guard Elevation of Privilege Vulnerability | Important | 7.8 |
Windows Defender Credential Guard | - | - | - |
| CVE-2022-35797 | Windows Hello Security Feature Bypass Vulnerability | Important | 6.1 |
Windows Hello | - | - | - |
| CVE-2022-35772 | Azure Site Recovery Remote Code Execution Vulnerability | Important | 7.2 |
Azure Site Recovery | - | - | - |
| CVE-2022-35799 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35774 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 4.9 |
Azure Site Recovery | - | - | - |
| CVE-2022-35800 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 4.9 |
Azure Site Recovery | - | - | - |
| CVE-2022-35775 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35801 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35777 | Visual Studio Remote Code Execution Vulnerability | Important | 8.8 |
Visual Studio | - | - | - |
| CVE-2022-35779 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | Important | 7.8 |
Azure Real Time Operating System | - | - | - |
| CVE-2022-35806 | Azure RTOS GUIX Studio Remote Code Execution Vulnerability | Important | 7.8 |
Azure Real Time Operating System | - | - | - |
| CVE-2022-35807 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35808 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35782 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35809 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35783 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 4.4 |
Azure Site Recovery | - | - | - |
| CVE-2022-35784 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35810 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35811 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35785 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35812 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 4.9 |
Azure Site Recovery | - | - | - |
| CVE-2022-35786 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35787 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 4.9 |
Azure Site Recovery | - | - | - |
| CVE-2022-35813 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35788 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35814 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35789 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35815 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35790 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35816 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35817 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35791 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35818 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35819 | Azure Site Recovery Elevation of Privilege Vulnerability | Important | 6.5 |
Azure Site Recovery | - | - | - |
| CVE-2022-35820 | Windows Bluetooth Driver Elevation of Privilege Vulnerability | Important | 7.8 |
Microsoft Bluetooth Driver | - | - | - |
| CVE-2022-35821 | Azure Sphere Information Disclosure Vulnerability | Important | 4.4 |
Azure Sphere | - | - | - |
| CVE-2022-35822 | Windows Defender Credential Guard Security Feature Bypass Vulnerability | Important | 7.1 |
Windows Defender Credential Guard | - | - | - |
| CVE-2022-35824 | Azure Site Recovery Remote Code Execution Vulnerability | Important | 7.2 |
Azure Site Recovery | - | - | - |
| CVE-2022-35825 | Visual Studio Remote Code Execution Vulnerability | Important | 8.8 |
Visual Studio | - | - | - |
| CVE-2022-35826 | Visual Studio Remote Code Execution Vulnerability | Important | 8.8 |
Visual Studio | - | - | - |
| CVE-2022-35827 | Visual Studio Remote Code Execution Vulnerability | Important | 8.8 |
Visual Studio | - | - | - |
Threat Categories 6
| Threat Category | CVEs | Critical |
|---|---|---|
| Elevation of Privilege | 66 | 5 |
| Remote Code Execution | 32 | 12 |
| Information Disclosure | 12 | - |
| Denial of Service | 7 | - |
| Security Feature Bypass | 5 | - |
| Spoofing | 1 | - |
Affected Products 39
| Product | CVEs | Exploited |
|---|---|---|
| Azure Site Recovery | 34 | - |
| Azure Real Time Operating System | 8 | - |
| Windows Defender Credential Guard | 8 | - |
| Windows Kernel | 7 | - |
| Windows Secure Socket Tunneling Protocol (SSTP) | 7 | - |
| Microsoft Exchange Server | 6 | - |
| Windows Storage Spaces Direct | 5 | - |
| Visual Studio | 4 | - |
| Microsoft Edge (Chromium-based) | 3 | - |
| Remote Access Service Point-to-Point Tunneling Protocol | 3 | - |
| Windows Point-to-Point Tunneling Protocol | 3 | - |
| Microsoft Office Excel | 2 | - |
| Microsoft Windows Support Diagnostic Tool (MSDT) | 2 | 1 |
| Role: Windows Hyper-V | 2 | - |
| Windows Digital Media | 2 | - |
| Windows Local Security Authority (LSA) | 2 | - |
| Windows Partition Management Driver | 2 | - |
| Windows Print Spooler Components | 2 | - |
| .NET Core | 1 | - |
| Active Directory Domain Services | 1 | - |
| Azure Batch Node Agent | 1 | - |
| Azure Sphere | 1 | - |
| Microsoft ATA Port Driver | 1 | - |
| Microsoft Bluetooth Driver | 1 | - |
| Microsoft Office | 1 | - |
| Microsoft Office Outlook | 1 | - |
| Role: Windows Fax Service | 1 | - |
| System Center Operations Manager | 1 | - |
| Windows Bluetooth Service | 1 | - |
| Windows Canonical Display Driver | 1 | - |
| Windows Cloud Files Mini Filter Driver | 1 | - |
| Windows Error Reporting | 1 | - |
| Windows Hello | 1 | - |
| Windows Internet Information Services | 1 | - |
| Windows Kerberos | 1 | - |
| Windows Network File System | 1 | - |
| Windows Unified Write Filter | 1 | - |
| Windows WebBrowser Control | 1 | - |
| Windows Win32K | 1 | - |