Microsoft Windows Graphics Device Interface (GDI) Remote Code Execution Vulnerability
Microsoft · Windows
Date added (CISA)
2022-05-25
Remediation due
2022-06-15
Known ransomware use
Not indicated
Remediation priority
P2 — past CISA due date
Description
A remote code execution vulnerability exists due to the way the Windows GDI component handles objects in the memory. An attacker who successfully exploits this vulnerability could take control of the affected system.