Microsoft Patch Tuesday for March 2025 — Snort rules and prominent vulnerabilities
ID: 8ce88ed1-28e5-58ed-9ba8-1374b8d8a5c6
STIX ID: report--8ce88ed1-28e5-58ed-9ba8-1374b8d8a5c6
Feed Name: Cisco Talos
Microsoft's March 2025 security update addresses 57 vulnerabilities—six critical—including multiple remote code execution (RCE) and elevation-of-privilege issues across Windows components; several CVEs (e.g., CVE-2025-26633, CVE-2025-24993, CVE-2025-24985, CVE-2025-24983) have been observed exploited in the wild. Notable critical issues impact RD Gateway (CVE-2025-24035, CVE-2025-24045), Synaptics Audio component (CVE-2024-9157, CVSS 9.9), DNS (CVE-2025-24064), WSL2 kernel (CVE-2025-24084), and an RDP client path-traversal (CVE-2025-26645). Talos released corresponding Snort/Snort 3 rules and recommends applying updates and IDS rule updates to detect exploitation attempts.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
