logo

CVE-2022-21907

ID: b64555d7-8a8b-5977-9dfd-9b62aa8775d5

STIX ID: report--b64555d7-8a8b-5977-9dfd-9b62aa8775d5

Feed Name: Arctic Wolf Blog

Threat Score
70/100

Date Published: 2022-01-12

Date Updated: 2026-04-26

...
...

Microsoft released patches addressing CVE-2022-21907, a wormable remote code execution vulnerability in the HTTP Protocol Stack (http.sys) that affects multiple Windows desktop and server versions when HTTP Trailer Support is enabled; due to http.sys being a kernel-mode driver, successful exploitation could lead to complete system compromise. Microsoft and Arctic Wolf report no known in-the-wild exploitation or public PoC at the time of the advisory, and recommend immediate patching and, where applicable, disabling HTTP Trailer Support (Windows Server 2019 / Windows 10 1809) as a temporary mitigation; the bulletin also notes other critical fixes including Exchange and cURL vulnerabilities.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.