I need to install this security update: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-24463 on Windows Server 2016.
Why there are two items for Windows Server 2016? Should I install only Update 22
because it includes Update 21
?
If I need to install both, should I install first Update 21
then Update 22
? More in general why do these patches come in pair?
Release Date Product Impact Severity Article Download Details
Mar 8, 2022 Microsoft Exchange Server 2019 Cumulative Update 11 Spoofing Important 5012698 Security Update CVE-2022-24463
Mar 8, 2022 Microsoft Exchange Server 2016 Cumulative Update 22 Spoofing Important 5012698 Security Update CVE-2022-24463
Mar 8, 2022 Microsoft Exchange Server 2019 Cumulative Update 10 Spoofing Important 5012698 Security Update CVE-2022-24463
Mar 8, 2022 Microsoft Exchange Server 2016 Cumulative Update 21 Spoofing Important 5012698 Security Update CVE-2022-24463