logo

Admins can give thanks this November for dollops of Microsoft patches

ID: 0388fdfe-d044-5ed7-8c15-50e696b82e0c

STIX ID: report--0388fdfe-d044-5ed7-8c15-50e696b82e0c

Feed Name: The Register (Security)

Threat Score
78/100

Date Published: 2024-11-13

Date Updated: 2026-04-26

Author: Iain Thomson

...
...

Patch Tuesday: Microsoft published fixes for 89 CVE-listed security flaws (including two observed being actively exploited) and reissued three advisories; notable issues include privilege escalation in Windows Task Scheduler (CVE-2024-49039), an NTLMv2 spoofing/hash-theft flaw (CVE-2024-43451), high-severity RCE in Azure CycleCloud (CVE-2024-43602), and multiple 9.8–9.9 CVSS vulnerabilities across .NET, Visual Studio, and Kerberos. CISA added several of these to its Known Exploited Vulnerabilities Catalog, and the bulletin also summarizes concurrent patch releases from Citrix, Intel, AMD, and Adobe and broader trends in zero-day exploitation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.