Tech giant Microsoft has addressed a total of 79 vulnerabilities in its monthly Windows 11 security update, three of which are actively exploited by malicious actors. The update also addresses a critical vulnerability affecting an older version of Windows 10 that has been going unnoticed for some time.
Windows 11 is now more secure
Microsoft announced three new and actively exploited vulnerabilities affecting the Windows platform with the Patch Tuesday update released on Tuesday, September 2024. These vulnerabilities focus on methods used by malicious actors to infiltrate systems and take control.
The monthly security update fixes a total of 79 vulnerabilities, seven of which are critical. It’s worth noting that these figures don’t include the 26 vulnerabilities the tech giant has patched in its Chromium-based Edge browser since last month’s Patch Tuesday release. This shows that Microsoft is constantly working to patch vulnerabilities in its software.
Details about two important vulnerabilities fixed with the Windows 11 update:
- CVE-2024-38014 (CVSS score: 7.8) – Windows Installer High Privilege Escalation Vulnerability: This vulnerability allows attackers to impersonate a user with higher privileges on the system.
- CVE-2024-38217 (CVSS score: 5.4) – Windows Mark-of-the-Web (MotW) Security Feature Bypass Vulnerability: Also known as ‘LNK Stomping’, this vulnerability has been actively exploited since 2018 and allows attackers to bypass security warnings of files downloaded from the internet.
What do you think about this? Have you updated? You can share your opinions in the comments.