CVE-2024-21431: Microsoft Windows 10 21h2

Medium severity, CVSS 6.7. EPSS: 0.6% chance of exploitation in the next 30 days.

Hypervisor-Protected Code Integrity (HVCI) Security Feature Bypass Vulnerability

Affected products

  • Microsoft Windows 10 21h2: before 10.0.19044.4170 (fixed in 10.0.19044.4170)
  • Microsoft Windows 10 22h2: before 10.0.19045.4170 (fixed in 10.0.19045.4170)
  • Microsoft Windows 11 21h2: before 10.0.22000.2836 (fixed in 10.0.22000.2836)
  • Microsoft Windows 11 22h2: before 10.0.22621.3296 (fixed in 10.0.22621.3296)
  • Microsoft Windows 11 23h2: before 10.0.22631.3296 (fixed in 10.0.22631.3296)
  • Microsoft Windows Server 2022: before 10.0.20348.2340 (fixed in 10.0.20348.2340)
  • Microsoft Windows Server 2022 23h2: before 10.0.25398.763 (fixed in 10.0.25398.763)

Published 2024-03-12. Last modified 2026-06-17.