Microsoft published Security Update Guide entries for CVE-2024-49114 and CVE-2022-21899, identifying Windows security weaknesses that could allow a security feature bypass. One of the referenced advisories explicitly describes CVE-2022-21899 as a Windows Extensible Firmware Interface Security Feature Bypass Vulnerability, pointing to risk in the platform’s boot and firmware trust chain.
The available references provide limited technical detail, but both entries indicate Microsoft formally tracked and disclosed the issues through its Security Update Guide and advisory portal. For defenders, the disclosures highlight the need to review Microsoft guidance for affected Windows and firmware-related components, validate patch status, and prioritize systems where bypassing built-in protections could weaken secure boot or other platform security controls.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
Microsoft published a Security Update Guide entry for CVE-2024-49114. No additional incident or exploitation details are provided in the reference content.
Microsoft published a Security Update Guide advisory for CVE-2022-21899, a Windows Extensible Firmware Interface Security Feature Bypass Vulnerability.
2 references tracked. Mallory keeps watching after this page renders.
msrc.microsoft.com
Open sourceportal.msrc.microsoft.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.