Category: Microsoft|Sep 16, 2019 | Author: Admin

Microsoft September Patch Tuesday Addresses Two Actively Exploited Zero-Day Bugs

Share on

This Tuesday, Microsoft has rolled-out its scheduled monthly updates for 80 different bugs. Notably, the September Patch Tuesday update bundle from Microsoft brings fixes for two zero-day bugs under active exploit.

Microsoft-January-Patch-Tuesday-800x445.jpg

Patches For Actively Exploited Zero-Day Vulnerabilities The most noteworthy fixes in Microsoft September Patch Tuesday bundle includes ones for two zero-day bugs under active exploit. These two zero-days precisely are privilege escalation bugs. While both of these attained important severity rating, they became a problem owing to their active exploitation in the wild. The first of these is an EoP in the Windows Common Log File System Driver (CVE-2019-1214). The bug existed due to improper object handling in the memory by Windows CLFS. Upon an exploit, the flaw could let an attacker execute processes with elevated user privileges. Regarding the exploit condition, Microsoft stated in their advisory,

To exploit the vulnerability, an attacker would first have to log on to the system, and then run a specially crafted application to take control of the affected system.

Whereas, the other EoP existed in the ws2ifsl.sys (Winsock) owing to improper object handling in memory. Regarding this Windows vulnerability (CVE-2019-1215), Microsoft explained in the advisory,

An attacker who successfully exploited the vulnerability could execute code with elevated privileges. To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application.

Other Microsoft September Patch Tuesday Updates Apart from the two zero-days, Microsoft has also patched 79 other bugs with this update bundle. These include 17 critical vulnerabilities that could allow remote code execution upon an exploit. Of these, 4 existed in the Remote Desktop Client, 5 in the Chakra Scripting Engine, 2 in VBScript, 3 in Microsoft SharePoint, and 1 RCE bug each in Scripting Engine, .LNK file processing, and Azure DevOps Server (ADO) and Team Foundation Server (TFS). Microsoft also fixed 60 other important severity bugs in various products. These bugs, upon exploit, could result in information disclosure, spoofing, the elevation of privileges, or even remote code execution. In addition, Microsoft also patched a moderate severity spoofing vulnerability (CVE-2019-1259), in Microsoft SharePoint. In August, Microsoft addressed 93 vulnerabilities with its Patch Tuesday bundle, more than the ones addressed this month. However, the previous month’s patches did not include any actively exploited bugs. Make sure to update your systems at the earliest to stay protected from potential attacks.

Sponsored Ads:

Comments:


Chrome_flare-21-05-25.png

Data-stealing Chrome extensions impersonate Fortinet, YouTube, VPNs

Category: Google|May 21, 2025 | Author: Admin
ChatGPT_headpic-20-05-25.png

OpenAI plans to combine multiple models into GPT-5

Category: IT|May 20, 2025 | Author: Admin
Cell-towers-19-05-25.png

O2 UK patches bug leaking mobile user location from call metadata

Category: IT|May 19, 2025 | Author: Admin
Windows_BitLocker-18-05-25.png

Microsoft confirms May Windows 10 updates trigger BitLocker recovery

Category: Microsoft|May 18, 2025 | Author: Admin
karljohan-17-05-25.jpg

Gratulerer med 17. mai!

Category: Norge|May 17, 2025 | Author: Admin
ChatGPT-16-05-25.png

ChatGPT rolls out Codex, an AI tool for software programming

Category: IT|May 16, 2025 | Author: Admin
Google-Chrome-headpic-15-05-25.png

Google Chrome to block admin-level browser launches for better security

Category: Google|May 15, 2025 | Author: Admin
Linux-14-05-25.png

Microsoft fixes Linux boot issues on dual-boot Windows systems

Category: Microsoft|May 14, 2025 | Author: Admin
Windows_11-13-05-25.png

Windows 11 upgrade block lifted after Safe Exam Browser fix

Category: Microsoft|May 13, 2025 | Author: Admin
bluetooth-12-05-25.png

Bluetooth 6.1 enhances privacy with randomized RPA timing

Category: IT|May 12, 2025 | Author: Admin
ChatGPT-22-05-25.png

ChatGPT is finally adding Download as PDF for Deep Research

Category: IT|May 11, 2025 | Author: Admin
Microsoft-Teams-10-05-25.png

Microsoft Teams will soon block screen capture during meetings

Category: Microsoft|May 10, 2025 | Author: Admin
cryptocurrency-header-09-05-25.png

Germany takes down eXch cryptocurrency exchange, seizes servers

Category: IT|May 9, 2025 | Author: Admin
Discord-08-05-25.png

Malicious PyPi package hides RAT malware, targets Discord devs since 2022

Category: IT|May 8, 2025 | Author: Admin
WordPress-headpic-07-05-25.png

Hackers exploit OttoKit WordPress plugin flaw to add admin accounts

Category: IT|May 7, 2025 | Author: Admin
more