Microsoft has released its monthly patch of security updates, known as Patch Tuesday. Microsoft has fixed (49) vulnerabilities, with (2) classified as critical as they could allow the attacker to perform remote code execution, bypass security restrictions, gain elevated privilege, spoofing attacks, or gain access to the affected products.
January’s Patch Tuesday was released to fix security flaws in several Microsoft products such as Microsoft Office, Microsoft Office SharePoint, Microsoft Edge (Chromium-based), Microsoft Virtual Hard Drive, Visual Studio, SQL Server, Azure Storage Mover, Windows BitLocker, Windows Kernel, Windows Authentication Methods, Windows ODBC Driver, Windows Libarchive, .NET Framework, Windows Message Queuing, Microsoft Devices, Windows Hyper-V, Windows Scripting, Windows Server Key Distribution Service and Windows Local Security Authority Subsystem Service (LSASS).
Sample of the addressed vulnerabilities:
1. Microsoft .NET and Visual Studio Framework Security Bypass Vulnerability (CVE-2024-0057):
2. Microsoft Windows ODBC Driver Code Execution (CVE-2024-20654):
The enterprise should deploy this patch as soon as the testing phase is completed.
Cookie | Duration | Description |
---|---|---|
cookielawinfo-checkbox-analytics | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics". |
cookielawinfo-checkbox-functional | 11 months | The cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional". |
cookielawinfo-checkbox-necessary | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
cookielawinfo-checkbox-others | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other. |
cookielawinfo-checkbox-performance | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance". |
viewed_cookie_policy | 11 months | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |