Microsoft Windows Server 2012
cpe:2.3:o:microsoft:windows_server_2012:*:*:*:*:*:*:*
A vulnerability in the Windows Imaging Component (WIC) has been identified, allowing unauthorized attackers to disclose information locally. This issue arises from the use of uninitialized resources, which could enable an attacker to read small portions of heap memory.
Exploitation of this vulnerability could lead to unauthorized information disclosure.
Users can download the security update for this vulnerability through the Microsoft Update Catalog. Security update KB5065429 is available for various Windows 10 versions, while KB5065426 can be downloaded for Windows Server 2025. For Windows Server 2022, 23H2 Edition, the security update KB5065432 is available. Additionally, Windows 11 users can download the security update KB5065431 for both the 22H2 and 24H2 versions. For Windows Server 2022, the security update KB5065432 is also available.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.