Patch Tuesday
Redmond pushes fixes for 117 vulnerabilities, three rated critical, five as publicly known , and eight marked as “exploitation more likely.” Beyond Microsoft, there are...
Remote code execution bug is confusingly described as having been exploited in the wild, even though it is not believed to have left Microsoft's lab.
CVE-2024-38063 lets unauthenticated attackers carry out remote code execution by "repeatedly sending IPv6 packets".
The bugs include four publicly known flaws and six that have been exploited in the wild.
As a major Exchange Service update lands, Redmond admits "it is possible that some functionality may break after installing CU14..."
One vulnerability bears a striking resemblance to an 0day that was actively exploited in the wild in November 2023.