Microsoft Patch Tuesday, November 2024 Edition
ID: 15c38910-8e51-5417-92e6-1e9d2331dc40
STIX ID: report--15c38910-8e51-5417-92e6-1e9d2331dc40
Feed Name: Krebs on Security
Microsoft released fixes for at least 89 security flaws in Windows and other products, including two zero-day vulnerabilities being actively exploited (CVE-2024-49039 in Task Scheduler and CVE-2024-43451 exposing Net‑NTLMv2 hashes), additional publicly disclosed issues (including Active Directory CS and Exchange spoofing flaws), and several high-severity remote code execution and memory-related bugs (notably a Kerberos RCE and a .NET/Visual Studio RCE rated 9.8) that could enable privilege escalation, lateral movement, and malware installation across enterprise Windows environments.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
