HomeTech PlusTECH & OTHER NEWSMicrosoft's May 2021 Patch Tuesday: 55 flaws fixed, four critical

Microsoft’s May 2021 Patch Tuesday: 55 flaws fixed, four critical

Microsoft’s May Patch Tuesday dump included patches for 55 CVEs with four rated critical. There were also three zero-day bugs but none have been exploited.

Products impacted includes Internet Explorer, .NET Core and Visual Studio, Windows 10 and Office to name a few. You can find the updates for May here.

The fixed zero day bugs include:

  • CVE-2021-31204 .NET and Visual Studio Elevation of Privilege Vulnerability
  • CVE-2021-31207 Microsoft Exchange Server Security Feature Bypass Vulnerability
  • CVE-2021-31200 Common Utilities Remote Code Execution Vulnerability

Zero Day Initiative flagged CVE-2021-31166 as one of the more interesting bugs. ZDI said:

CVE-2021-31166 – HTTP Protocol Stack Remote Code Execution Vulnerability

This patch corrects a bug that could allow an unauthenticated attacker to remotely execute code as kernel. An attacker would simply need to send a specially crafted packet to an affected server. That makes this bug wormable, with even Microsoft calling that out in their write-up. Before you pass this aside, Windows 10 can also be configured as a web server, so it is impacted as well. Definitely put this on the top of your test-and-deploy list.

There’s also a Hyper-V Remote Code Execution Vulnerability flagged by ZDI with a CVSS rating of 9.9.

By ZDNet Source Link

Technology For You
Technology For Youhttps://www.technologyforyou.org
Technology For You - One of the Leading Online TECHNOLOGY NEWS Media providing the Latest & Real-time news on Technology, Cyber Security, Smartphones/Gadgets, Apps, Startups, Careers, Tech Skills, Web Updates, Tech Industry News, Product Reviews and TechKnowledge...etc. Technology For You has always brought technology to the doorstep of the Industry through its exclusive content, updates, and expertise from industry leaders through its Online Tech News Website. Technology For You Provides Advertisers with a strong Digital Platform to reach lakhs of people in India as well as abroad.

LEAVE A REPLY

Please enter your comment!
Please enter your name here

spot_img

CYBER SECURITY NEWS

TECH NEWS

TOP NEWS