CVE-2022-29131 and CVE-2022-22711 applicable to server 2012 R2

ryan br 21 Reputation points
2022-09-21T20:50:17.007+00:00

the Kenna Security vulnerability scanner is reporting the CVEs below on a 2012 R2 domain controller but i am unable to find a patch or any documentation that reflects this

CVE-2022-22711(Windows BitLocker Information Disclosure Vulnerability)

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-22711 

Available patches are only for server 2016 and later

CVE-2022-29131 (Windows LDAP Remote Code Execution Vulnerability)

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-29131  

Available patches are only for server 2019 and later

security update guide page is reporting the same https://msrc.microsoft.com/update-guide/ 

just trying to confirm before sending something to Kenna Security that these two CVEs do not apply

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
13,054 questions
Windows Server Security
Windows Server Security
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Security: The precautions taken to guard against crime, attack, sabotage, espionage, or another threat.
1,834 questions
0 comments No comments
{count} votes

Accepted answer
  1. Anonymous
    2022-09-21T21:24:39.633+00:00

    Looks like these ones for Server 2012 R2
    https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-29127
    https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-29139

    --please don't forget to upvote and Accept as answer if the reply is helpful--


1 additional answer

Sort by: Most helpful
  1. Anonymous
    2022-09-22T00:06:28.33+00:00

    The two I mentioned address the two issues you raised but for Server 2012 R2

    1. BitLocker Security Feature Bypass Vulnerability
    2. Windows LDAP Remote Code Execution Vulnerability

    --please don't forget to upvote and Accept as answer if the reply is helpful--

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.