Windows 10: BitLocker Security Feature Bypass Vulnerability CVE-2022-41099 and KB5025175

Discus and support BitLocker Security Feature Bypass Vulnerability CVE-2022-41099 and KB5025175 in Windows 10 Gaming to solve the problem; Hello,This is a about CVE-2022-41099 and KB5025175.Firstly, the KB5025175 page provides PatchWinREScript_2004plus.ps1 and PatchWinREScript_General.ps1... Discussion in 'Windows 10 Gaming' started by Bruno_123_123, Apr 6, 2023.

  1. BitLocker Security Feature Bypass Vulnerability CVE-2022-41099 and KB5025175


    Hello,This is a about CVE-2022-41099 and KB5025175.Firstly, the KB5025175 page provides PatchWinREScript_2004plus.ps1 and PatchWinREScript_General.ps1 as "Sample" scripts, presumably expecting us to read and understand them before running them.- Could we have a "download" option, instead of having to copy/paste/save?- Also, is there any chance Microsoft could make them readable by formatting and indenting them properly?Secondly, the link in KB5025175 says "We recommend that you use the latest Safe OS Dynamic Update available for the version of Windows installed on the device." The Windows

    :)
     
    Bruno_123_123, Apr 6, 2023
    #1
  2. BenHWEX Win User

    Was Follina (CVE-2022-30190) not actually addressed in the June 2022 Security Patch?

    Hello,

    I have an issue with the flow of information when using the MSRC Portal, as the Follina CVE (CVE-2022-30190) is not showing as part of the CVE's addressed in the June 2022 patch, even though it does say that the June 2022 Security Patch fixes the Vulnerability.

    Please follow my steps:

    MSRC's Follina CVE page Security Update Guide - Microsoft Security Response Center

    Navigate to the bottom and select the KB Article for Server 2019 (this applies to all other KB Articles, but this is my example)

    https://support.microsoft.com/en-gb...763-3046-62fe56c1-a8c0-40e8-a901-677ab9538bf8

    In this article, follow the link under Improvements -> "June 2022 Security Updates."

    This brings you back to the MSRC page: Security Update Guide - Microsoft Security Response Center

    These release notes DO NOT say that the CVE-2022-30190 was addressed in the June patching...?

    Can someone please help here and confirm if the Follina CVE (CVE-2022-30190) patch was actually applied in the June Patch Tuesday release?
     
    BenHWEX, Apr 6, 2023
    #2
  3. BenHWEX Win User
    Was Follina (CVE-2022-30190) not actually addressed in the June 2022 Security Patch?

    I'll create a thread in the Server 2019 area, thank you.

    You have actually just pointed out another issue, as the Link you provided brings me to the CVE's Blog and the links inside THAT blog redirect me to an Internet Explorer Security Update, not a Follina update...?

    /blog/2022/05/guidance-for-cve-2022-30190-microsoft-support-diagnostic-tool-vulnerability/


    BitLocker Security Feature Bypass Vulnerability CVE-2022-41099 and KB5025175 40391e81-5c9c-459f-a96a-5bfe8468c16f?upload=true.png


    https://support.microsoft.com/en-gb...-12-2022-e8e52940-aaf1-48fd-8f1d-a3cf83e4ac68


    BitLocker Security Feature Bypass Vulnerability CVE-2022-41099 and KB5025175 b5deca75-ac63-47a2-a663-a2c03659b0fa?upload=true.png
     
    BenHWEX, Apr 6, 2023
    #3
  4. Brink Win User

    BitLocker Security Feature Bypass Vulnerability CVE-2022-41099 and KB5025175

    KB5012170: Security update for Secure Boot DBX: August 9, 2022

    Read more: https://support.microsoft.com/en-us/...8-c42bd211bb15
     
    Brink, Apr 6, 2023
    #4
Thema:

BitLocker Security Feature Bypass Vulnerability CVE-2022-41099 and KB5025175

Loading...
  1. BitLocker Security Feature Bypass Vulnerability CVE-2022-41099 and KB5025175 - Similar Threads - BitLocker Security Feature

  2. BitLocker Security Feature Bypass Vulnerability CVE-2022-41099 and KB5025175

    in Windows 10 Software and Apps
    BitLocker Security Feature Bypass Vulnerability CVE-2022-41099 and KB5025175: Hello,This is a about CVE-2022-41099 and KB5025175.Firstly, the KB5025175 page provides PatchWinREScript_2004plus.ps1 and PatchWinREScript_General.ps1 as "Sample" scripts, presumably expecting us to read and understand them before running them.- Could we have a "download"...
  3. BitLocker Security Feature Bypass Vulnerability CVE-2022-41099 and KB5025175

    in AntiVirus, Firewalls and System Security
    BitLocker Security Feature Bypass Vulnerability CVE-2022-41099 and KB5025175: Hello,This is a about CVE-2022-41099 and KB5025175.Firstly, the KB5025175 page provides PatchWinREScript_2004plus.ps1 and PatchWinREScript_General.ps1 as "Sample" scripts, presumably expecting us to read and understand them before running them.- Could we have a "download"...
  4. CVE-2022-30190 Microsoft Support Diagnostic Tool Vulnerability

    in Windows 10 Software and Apps
    CVE-2022-30190 Microsoft Support Diagnostic Tool Vulnerability: Hello Guys,Could you please help me on this.For the Microsoft Diagnostic Tool Vulnerability I have found the workaround like below.Run Command Prompt as Administrator.To back up the registry key, execute the command “reg export HKEY_CLASSES_ROOT\ms-msdt filename“Execute the...
  5. CVE-2022-30190 Microsoft Support Diagnostic Tool Vulnerability

    in Windows 10 Gaming
    CVE-2022-30190 Microsoft Support Diagnostic Tool Vulnerability: Hello Guys,Could you please help me on this.For the Microsoft Diagnostic Tool Vulnerability I have found the workaround like below.Run Command Prompt as Administrator.To back up the registry key, execute the command “reg export HKEY_CLASSES_ROOT\ms-msdt filename“Execute the...
  6. Vulnerability CVE-2021-36934

    in Windows 10 BSOD Crashes and Debugging
    Vulnerability CVE-2021-36934: I saw in the press that an additional vulnerability of Windows 10, known as CVE-2021-36934, can be remedied at list until a Microsoft patch is available by running as administrator Win 10 Powershell and then typing: icacls $env:windir\system32\config\*.*...
  7. CVE-2020-0601 Windows CryptoAPI Spoofing Vulnerability Security Vulnerability Published:...

    in Windows 10 Installation and Upgrade
    CVE-2020-0601 Windows CryptoAPI Spoofing Vulnerability Security Vulnerability Published:...: Having Windows 10 for some time now, I'm sure along with others, Microsoft continues seemingly monthly, at minimum to post update WARNINGS. WHY is such a company continually putting out updates for their customers with Windows 10 when they themselves don't take the proper...
  8. CVE-2019-1314 Windows 10 Mobile Security Feature Bypass Vulnerability Mobile

    in Windows 10 News
    CVE-2019-1314 Windows 10 Mobile Security Feature Bypass Vulnerability Mobile: Security Vulnerability Published: 10/08/2019 MITRE CVE-2019-1314 A security feature bypass vulnerability exists in Windows 10 Mobile when Cortana allows a user to access files and folders through the locked screen. An attacker who successfully exploited this vulnerability...
  9. CVE-2019-0627 - Windows Security Feature Bypass Vulnerability

    in Windows 10 News
    CVE-2019-0627 - Windows Security Feature Bypass Vulnerability: A security feature bypass vulnerability exists in Windows which could allow an attacker to bypass Device Guard. An attacker who successfully exploited this vulnerability could circumvent a User Mode Code Integrity (UMCI) policy on the machine. To exploit the vulnerability,...
  10. CVE-2018-8512 - Microsoft Edge Security Feature Bypass Vulnerability

    in Windows 10 News
    CVE-2018-8512 - Microsoft Edge Security Feature Bypass Vulnerability: A security feature bypass vulnerability exists when Microsoft Edge improperly handles requests of different origins. The vulnerability allows Microsoft Edge to bypass Same-Origin Policy (SOP) restrictions, and to allow requests that should otherwise be ignored. An attacker...