HomeSample Page

Sample Page Title


Patch Tuesday

As we speak is Microsoft’s November 2023 Patch Tuesday, which incorporates safety updates for a complete of 58 flaws and 5 zero-day vulnerabilities.

Whereas fourteen distant code execution (RCE) bugs had been mounted, Microsoft solely rated one as essential. The three essential flaws mounted at present are anĀ Azure data disclosure bug, an RCE in Home windows Web Connection Sharing (ICS), and a Hyper-V escape flaw that permits the executions of applications on the host with SYSTEM privileges.

The variety of bugs in every vulnerability class is listed under:

  • 26 Elevation of Privilege Vulnerabilities
  • 3 Safety Characteristic Bypass Vulnerabilities
  • 45 Distant Code Execution Vulnerabilities
  • 12 Data Disclosure Vulnerabilities
  • 17 Denial of Service Vulnerabilities
  • 1 Spoofing Vulnerabilities

The entire depend of 58 flaws doesn’t embrace 5 Mariner safety updates and 20 Microsoft Edge safety updates launched earlier this month.

To study extra in regards to the non-security updates launched at present, you possibly can overview our devoted articles on the brand newĀ Home windows 11 KB5032190 cumulative replaceĀ andĀ Home windows 10 KB5032189 cumulative replace.

5 zero-days mounted

This month’s Patch Tuesday fixes 5 zero-day vulnerabilities, with three exploited in assaults and three publicly disclosed.

Microsoft classifies a vulnerability as a zero-day whether it is publicly disclosed or actively exploited with no official repair out there.

The three actively exploited zero-day vulnerabilities in at present’s updates are:

CVE-2023-36036 – Home windows Cloud Recordsdata Mini Filter Driver Elevation of Privilege Vulnerability

Microsoft has mounted an actively exploited Home windows Cloud Recordsdata Mini Filter Elevation of Privileges bug.

“An attacker who efficiently exploited this vulnerability might acquire SYSTEM privileges,” explains Microsoft.

It isn’t recognized how the flaw was abused in assaults or by what menace actor.

The flaw was found internally by the Microsoft Menace Intelligence Microsoft Safety Response Heart.

CVE-2023-36033 – Home windows DWM Core Library Elevation of Privilege Vulnerability

Microsoft has mounted an actively exploited and publicly disclosedĀ Home windows DWM Core Library vulnerability that can be utilized to raise privileges to SYSTEM.

“An attacker who efficiently exploited this vulnerability might acquire SYSTEM privileges,” explains Microsoft.

Microsoft says that the flaw was found byĀ Quan Jin(@jq0904)Ā withĀ DBAPPSecurity WeBin LabĀ however didn’t share particulars on how they had been utilized in assaults.

CVE-2023-36025 –Ā Home windows SmartScreen Safety Characteristic Bypass Vulnerability

Microsoft has mounted an actively exploited Home windows SmartScreen flaw that permits a malicious Web Shortcut to bypass safety checks and warnings.

“The attacker would have the ability to bypass Home windows Defender SmartScreen checks and their related prompts,” explains Microsoft.

“The person must click on on a specifically crafted Web Shortcut (.URL) or a hyperlink pointing to an Web Shortcut file to be compromised by the attacker,” continues Microsoft.

Microsoft says that the flawĀ wasĀ found by Will Metcalf (Splunk), Microsoft Menace Intelligence, and the Microsoft Workplace Product Group Safety Crew.

BleepingComputer contacted Splunk in regards to the flaw to study the way it was exploited.

As well as, Microsoft says that two different publicly disclosed zero-day bugs, ‘CVE-2023-36413 –Ā Microsoft Workplace Safety Characteristic Bypass Vulnerability’Ā and the ‘CVE-2023-36038 — ASP.NET Core Denial of Service Vulnerability,’ had been additionally mounted as a part of at present’s Patch Tuesday.

Nevertheless, Microsoft says that they weren’t actively exploited in assaults.

Latest updates from different corporations

Different distributors who launched updates or advisories in November 2023 embrace:

The November 2023Ā Patch Tuesday Safety Updates

Beneath is the entire listing of resolved vulnerabilities within the November 2023 Patch Tuesday updates.

To entry the complete description of every vulnerability and the techniquesĀ it impacts, you possibly can view the full report right here.

TagCVE IDCVE TitleSeverity
.NET FrameworkCVE-2023-36049.NET, .NET Framework, and Visible Studio Elevation of Privilege VulnerabilityEssential
ASP.NETCVE-2023-36560ASP.NET Safety Characteristic Bypass VulnerabilityEssential
ASP.NETCVE-2023-36038ASP.NET Core Denial of Service VulnerabilityEssential
ASP.NETCVE-2023-36558ASP.NET Core – Safety Characteristic Bypass VulnerabilityEssential
AzureCVE-2023-36052Azure CLI REST Command Data Disclosure VulnerabilityCrucial
AzureCVE-2023-38151Microsoft Host Integration Server 2020 Distant Code Execution VulnerabilityEssential
AzureCVE-2023-36021Microsoft On-Prem Information Gateway Safety Characteristic Bypass VulnerabilityEssential
Azure DevOpsCVE-2023-36437Azure DevOps Server Distant Code Execution VulnerabilityEssential
MarinerCVE-2020-1747UnknownUnknown
MarinerCVE-2023-46316UnknownUnknown
MarinerCVE-2023-46753UnknownUnknown
MarinerCVE-2020-8554UnknownUnknown
MarinerCVE-2020-14343UnknownUnknown
Microsoft Bluetooth DriverCVE-2023-24023Mitre: CVE-2023-24023 Bluetooth VulnerabilityEssential
Microsoft DynamicsCVE-2023-36016Microsoft Dynamics 365 (on-premises) Cross-site Scripting VulnerabilityEssential
Microsoft DynamicsCVE-2023-36007Microsoft Ship Buyer Voice survey from Dynamics 365 Spoofing VulnerabilityEssential
Microsoft DynamicsCVE-2023-36031Microsoft Dynamics 365 (on-premises) Cross-site Scripting VulnerabilityEssential
Microsoft DynamicsCVE-2023-36410Microsoft Dynamics 365 (on-premises) Cross-site Scripting VulnerabilityEssential
Microsoft Dynamics 365 Gross salesCVE-2023-36030Microsoft Dynamics 365 Gross sales Spoofing VulnerabilityEssential
Microsoft Edge (Chromium-based)CVE-2023-36014Microsoft Edge (Chromium-based) Distant Code Execution VulnerabilityReasonable
Microsoft Edge (Chromium-based)CVE-2023-5996Chromium: CVE-2023-5996 Use after free in WebAudioUnknown
Microsoft Edge (Chromium-based)CVE-2023-36022Microsoft Edge (Chromium-based) Distant Code Execution VulnerabilityReasonable
Microsoft Edge (Chromium-based)CVE-2023-36027Microsoft Edge (Chromium-based) Elevation of Privilege VulnerabilityEssential
Microsoft Edge (Chromium-based)CVE-2023-36029Microsoft Edge (Chromium-based) Spoofing VulnerabilityReasonable
Microsoft Edge (Chromium-based)CVE-2023-5480Chromium: CVE-2023-5480 Inappropriate implementation in FundsUnknown
Microsoft Edge (Chromium-based)CVE-2023-5856Chromium: CVE-2023-5856 Use after free in Facet PanelUnknown
Microsoft Edge (Chromium-based)CVE-2023-5855Chromium: CVE-2023-5855 Use after free in Studying ModeUnknown
Microsoft Edge (Chromium-based)CVE-2023-5854Chromium: CVE-2023-5854 Use after free in ProfilesUnknown
Microsoft Edge (Chromium-based)CVE-2023-5859Chromium: CVE-2023-5859 Incorrect safety UI in Image In ImageUnknown
Microsoft Edge (Chromium-based)CVE-2023-5858Chromium: CVE-2023-5858 Inappropriate implementation in WebApp SupplierUnknown
Microsoft Edge (Chromium-based)CVE-2023-5857Chromium: CVE-2023-5857 Inappropriate implementation in DownloadsUnknown
Microsoft Edge (Chromium-based)CVE-2023-5850Chromium: CVE-2023-5850 Incorrect safety UI in DownloadsUnknown
Microsoft Edge (Chromium-based)CVE-2023-5849Chromium: CVE-2023-5849 Integer overflow in USBUnknown
Microsoft Edge (Chromium-based)CVE-2023-5482Chromium: CVE-2023-5482 Inadequate information validation in USBUnknown
Microsoft Edge (Chromium-based)CVE-2023-5853Chromium: CVE-2023-5853 Incorrect safety UI in DownloadsUnknown
Microsoft Edge (Chromium-based)CVE-2023-5852Chromium: CVE-2023-5852 Use after free in PrintingUnknown
Microsoft Edge (Chromium-based)CVE-2023-5851Chromium: CVE-2023-5851 Inappropriate implementation in DownloadsUnknown
Microsoft Edge (Chromium-based)CVE-2023-36024Microsoft Edge (Chromium-based) Elevation of Privilege VulnerabilityEssential
Microsoft Edge (Chromium-based)CVE-2023-36034Microsoft Edge (Chromium-based) Distant Code Execution VulnerabilityReasonable
Microsoft Change ServerCVE-2023-36439Microsoft Change Server Distant Code Execution VulnerabilityEssential
Microsoft Change ServerCVE-2023-36050Microsoft Change Server Spoofing VulnerabilityEssential
Microsoft Change ServerCVE-2023-36039Microsoft Change Server Spoofing VulnerabilityEssential
Microsoft Change ServerCVE-2023-36035Microsoft Change Server Spoofing VulnerabilityEssential
Microsoft WorkplaceCVE-2023-36413Microsoft Workplace Safety Characteristic Bypass VulnerabilityEssential
Microsoft WorkplaceCVE-2023-36045Microsoft Workplace Graphics Distant Code Execution VulnerabilityEssential
Microsoft Workplace ExcelCVE-2023-36041Microsoft Excel Distant Code Execution VulnerabilityEssential
Microsoft Workplace ExcelCVE-2023-36037Microsoft Excel Safety Characteristic Bypass VulnerabilityEssential
Microsoft Workplace SharePointCVE-2023-38177Microsoft SharePoint Server Distant Code Execution VulnerabilityEssential
Microsoft Distant Registry ServiceCVE-2023-36423Microsoft Distant Registry Service Distant Code Execution VulnerabilityEssential
Microsoft Distant Registry ServiceCVE-2023-36401Microsoft Distant Registry Service Distant Code Execution VulnerabilityEssential
Microsoft WDAC OLE DB supplier for SQLCVE-2023-36402Microsoft WDAC OLE DB supplier for SQL Server Distant Code Execution VulnerabilityEssential
Microsoft Home windows Search ElementCVE-2023-36394Home windows Search Service Elevation of Privilege VulnerabilityEssential
Microsoft Home windows SpeechCVE-2023-36719Microsoft Speech Software Programming Interface (SAPI) Elevation of Privilege VulnerabilityEssential
Open Administration InfrastructureCVE-2023-36043Open Administration Infrastructure Data Disclosure VulnerabilityEssential
Pill Home windows Person InterfaceCVE-2023-36393Home windows Person Interface Software Core Distant Code Execution VulnerabilityEssential
Visible StudioCVE-2023-36042Visible Studio Denial of Service VulnerabilityEssential
Visible Studio CodeCVE-2023-36018Visible Studio Code Jupyter Extension Spoofing VulnerabilityEssential
Home windows Authentication StrategiesCVE-2023-36047Home windows Authentication Elevation of Privilege VulnerabilityEssential
Home windows Authentication StrategiesCVE-2023-36428Microsoft Native Safety Authority Subsystem Service Data Disclosure VulnerabilityEssential
Home windows Authentication StrategiesCVE-2023-36046Home windows Authentication Denial of Service VulnerabilityEssential
Home windows Cloud Recordsdata Mini Filter DriverCVE-2023-36036Home windows Cloud Recordsdata Mini Filter Driver Elevation of Privilege VulnerabilityEssential
Home windows Widespread Log File System DriverCVE-2023-36424Home windows Widespread Log File System Driver Elevation of Privilege VulnerabilityEssential
Home windows Compressed FolderCVE-2023-36396Home windows Compressed Folder Distant Code Execution VulnerabilityEssential
Home windows DefenderCVE-2023-36422Microsoft Home windows Defender Elevation of Privilege VulnerabilityEssential
Home windows Deployment CompaniesCVE-2023-36395Home windows Deployment Companies Denial of Service VulnerabilityEssential
Home windows DHCP ServerCVE-2023-36392DHCP Server Service Denial of Service VulnerabilityEssential
Home windows Distributed File System (DFS)CVE-2023-36425Home windows Distributed File System (DFS) Distant Code Execution VulnerabilityEssential
Home windows DWM Core LibraryCVE-2023-36033Home windows DWM Core Library Elevation of Privilege VulnerabilityEssential
Home windows HMAC Key DerivationCVE-2023-36400Home windows HMAC Key Derivation Elevation of Privilege VulnerabilityCrucial
Home windows Hyper-VCVE-2023-36427Home windows Hyper-V Elevation of Privilege VulnerabilityEssential
Home windows Hyper-VCVE-2023-36407Home windows Hyper-V Elevation of Privilege VulnerabilityEssential
Home windows Hyper-VCVE-2023-36406Home windows Hyper-V Data Disclosure VulnerabilityEssential
Home windows Hyper-VCVE-2023-36408Home windows Hyper-V Elevation of Privilege VulnerabilityEssential
Home windows InstallerCVE-2023-36705Home windows Installer Elevation of Privilege VulnerabilityEssential
Home windows Web Connection Sharing (ICS)CVE-2023-36397Home windows Pragmatic Common Multicast (PGM) Distant Code Execution VulnerabilityCrucial
Home windows KernelCVE-2023-36405Home windows Kernel Elevation of Privilege VulnerabilityEssential
Home windows KernelCVE-2023-36404Home windows Kernel Data Disclosure VulnerabilityEssential
Home windows KernelCVE-2023-36403Home windows Kernel Elevation of Privilege VulnerabilityEssential
Home windows NTFSCVE-2023-36398Home windows NTFS Data Disclosure VulnerabilityEssential
Home windows Protected EAP (PEAP)CVE-2023-36028Microsoft Protected Extensible Authentication Protocol (PEAP) Distant Code Execution VulnerabilityEssential
Home windows ScriptingCVE-2023-36017Home windows Scripting Engine Reminiscence Corruption VulnerabilityEssential
Home windows SmartScreenCVE-2023-36025Home windows SmartScreen Safety Characteristic Bypass VulnerabilityEssential
Home windows StorageCVE-2023-36399Home windows Storage Elevation of Privilege VulnerabilityEssential



Related Articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Latest Articles