Microsoft fixes 63 vulnerabilities, including 2 zero-days
ID: c9cd47a3-580f-5d92-ac21-473961b1acef
STIX ID: report--c9cd47a3-580f-5d92-ac21-473961b1acef
Feed Name: CyberScoop
Microsoft released a security update fixing 63 vulnerabilities across Excel, Office, Windows CoreMessaging, Windows Storage and other components; among them are two actively exploited zero-days (a Windows Storage improper link resolution allowing file deletion and a heap overflow in the Ancillary Function Driver for WinSock enabling privilege escalation). Several high-severity remote-code-execution and privilege-escalation flaws — many rated likely to be exploited and with low attack complexity or no privilege/user interaction required — pose widespread risk to organizations, and Microsoft advises prioritizing patches.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
