FAQ
Why is this Rapid7 CVE included in the Security Update Guide? The vulnerability assigned to this CVE was originally classified as a stability bug in Windows. Rapid7 discovered that this bug could be used to cause a denial of service condition on affected versions of Windows. Microsoft had provided an update to address this issue prior to being contacted about it by Rapid 7. Microsoft appreciates the strong partnership that we have with Rapid7. Why are the May updates associated with the operating systems rows in the Security Updates table? This vulnerability was addressed in the May 2022 security updates.