CVE-2022-21965: Microsoft Teams Denial of Service Vulnerability

Overview

Severity
High (CVSS 7.5)
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C
Category
Denial of Service
Exploit Status
Not Exploited
Exploitation Likelihood
Less Likely
Patch Tuesday
2022-Feb
Released
2022-02-08
EPSS Score
12.80% (percentile: 94.0%)

FAQ

How do I get the update for Teams for Android? Tap the Google Play icon on your home screen. Swipe in from the left edge of the screen. Tap My apps & games. Tap the Update box next to the Teams app. Is there a direct link on the web? Yes: https://play.google.com/store/apps/details?id=com.microsoft.teams How do I get the update for Microsoft Teams for iOS? Tap the Settings icon Tap the** iTunes & App Store** Turn on AUTOMATIC DOWNLOADS for Apps Alternatively Tap the** App Store** icon Scroll down to find Microsoft Teams Tap the Update button How can I find out what version of Teams I am running? Click on the User Avatar at the top right of the Teams Windows. Click on About, then Version. The version will be displayed in the banner below the Search bar. Where do I get the latest version of Teams? The latest version of Microsoft Teams can be downloaded at https://teams.microsoft.com/download.

Affected Products (3)

Microsoft Office

  • Microsoft Teams for iOS
  • Microsoft Teams for Android
  • Microsoft Teams Admin Center

Security Updates (3)

Acknowledgments

Frank Cozijnsen of the KPN REDteam

Revision History

  • 2022-02-08: Information published.