Microsoft issues 117 patches – some for flaws already under attack
ID: ba698509-9cf0-547b-83d4-4c7567f1ffcb
STIX ID: report--ba698509-9cf0-547b-83d4-4c7567f1ffcb
Feed Name: The Register (Security)
October Patch Tuesday: Microsoft released 117 patches (including two vulnerabilities reported as being actively exploited), with the most notable being CVE-2024-43572 (7.8 RCE via untrusted MSC files) and CVE-2024-43573 (MSHTML spoofing). Additional high-risk fixes include a 9.8 RCE in Microsoft Configuration Manager (CVE-2024-43468) and a 9.0 Netlogon privilege escalation (CVE-2024-38124); Adobe and SAP also issued numerous patches. Administrators are advised to prioritize updates for affected Windows, Server, and enterprise products due to potential remote code execution and privilege escalation impacts.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
