{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"Azure Site Recovery VMWare to Azure","product":{"name":"Azure","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Visual Studio 2022 version 17.0","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Visual Studio 2017 version 15.9 (includes 15.0 - 15.8)","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Skype pour Business Server 2015 CU12","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"YARP 1.0","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"YARP 1.1RC","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Visual Studio 2019 version 16.7 (includes 16.0 \u2013 16.6)","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Visual Studio 2019 version 16.9 (includes 16.0 - 16.8)","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"HEVC Video Extensions","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Visual Studio 2019 version 16.11 (includes 16.0 - 16.10)","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Skype pour Business Server 2019 CU6","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Malware Protection Engine","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Visual Studio 2019 pour Mac version 8.10","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Visual Studio Code","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Dynamics 365 (on-premises) version 9.1","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft 365 Apps pour Enterprise pour syst\u00e8mes 32 bits","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft 365 Apps pour Enterprise pour 64 bits Systems","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Visual Studio 2022 version 17.1","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft On-Premises Data Gateway","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"HEVC Video Extension","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Lync Server 2013 CU10","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}},{"description":"Microsoft Dynamics 365 (on-premises) version 9.0","product":{"name":"N/A","vendor":{"name":"Microsoft","scada":false}}}],"affected_systems_content":null,"content":"## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n","cves":[{"name":"CVE-2022-26896","url":"https://www.cve.org/CVERecord?id=CVE-2022-26896"},{"name":"CVE-2022-24513","url":"https://www.cve.org/CVERecord?id=CVE-2022-24513"},{"name":"CVE-2022-26897","url":"https://www.cve.org/CVERecord?id=CVE-2022-26897"},{"name":"CVE-2022-26910","url":"https://www.cve.org/CVERecord?id=CVE-2022-26910"},{"name":"CVE-2022-24548","url":"https://www.cve.org/CVERecord?id=CVE-2022-24548"},{"name":"CVE-2022-26911","url":"https://www.cve.org/CVERecord?id=CVE-2022-26911"},{"name":"CVE-2022-24765","url":"https://www.cve.org/CVERecord?id=CVE-2022-24765"},{"name":"CVE-2022-24532","url":"https://www.cve.org/CVERecord?id=CVE-2022-24532"},{"name":"CVE-2022-23259","url":"https://www.cve.org/CVERecord?id=CVE-2022-23259"},{"name":"CVE-2022-26898","url":"https://www.cve.org/CVERecord?id=CVE-2022-26898"},{"name":"CVE-2022-24767","url":"https://www.cve.org/CVERecord?id=CVE-2022-24767"},{"name":"CVE-2022-26924","url":"https://www.cve.org/CVERecord?id=CVE-2022-26924"},{"name":"CVE-2022-26921","url":"https://www.cve.org/CVERecord?id=CVE-2022-26921"},{"name":"CVE-2022-24473","url":"https://www.cve.org/CVERecord?id=CVE-2022-24473"},{"name":"CVE-2022-26901","url":"https://www.cve.org/CVERecord?id=CVE-2022-26901"},{"name":"CVE-2022-23292","url":"https://www.cve.org/CVERecord?id=CVE-2022-23292"}],"links":[{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-26911 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26911"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-24532 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-24532"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-26898 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26898"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-26924 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26924"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-26901 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26901"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-23259 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-23259"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-26896 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26896"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-26910 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26910"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-24473 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-24473"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-26897 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26897"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-24548 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-24548"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-24513 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-24513"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-24767 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-24767"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-26921 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-26921"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-24765 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-24765"},{"title":"Bulletin de s\u00e9curit\u00e9 Microsoft CVE-2022-23292 du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-23292"}],"reference":"CERTFR-2022-AVI-337","revisions":[{"description":"Version initiale","revision_date":"2022-04-13T00:00:00.000000"}],"risks":[{"description":"Usurpation d'identit\u00e9"},{"description":"Ex\u00e9cution de code arbitraire \u00e0 distance"},{"description":"D\u00e9ni de service"},{"description":"Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"},{"description":"\u00c9l\u00e9vation de privil\u00e8ges"}],"summary":"De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans <span\nclass=\"textit\">les produits Microsoft</span>. Elles permettent \u00e0 un\nattaquant de provoquer une atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es,\nune usurpation d'identit\u00e9, une ex\u00e9cution de code \u00e0 distance, une\n\u00e9l\u00e9vation de privil\u00e8ges et un d\u00e9ni de service.\n","title":"Multiples vuln\u00e9rabilit\u00e9s dans les produits Microsoft","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 Microsoft du 12 avril 2022","url":"https://msrc.microsoft.com/update-guide/"}]}
