CyberzSOC

Publication detail
← Back to advisories & guidance

2024-106: Multiple Critical Vulnerabilities in Microsoft Products ↗ source

October 9, 2024 CERT-EU Advisory

Summary

This Patch Tuesday also fixes three critical We highlight here the zero-day vulnerabilities, but it is highly recommended to deploy Microsoft patches for all 118 vulnerabilities identified. The vulnerability CVE-2024-43573, with a CVSS score 6.5, could be a bypass of a previous vulnerability that abused MSHTML to spoof file extensions in alerts displayed when opening The vulnerability CVE-2024-43572, with a CVSS score 7.8, is a vulnerability that could allow malicious Microsoft Saved Console (MSC) files to perform remote code execution on vulnerable The vulnerability CVE-2024-6197, with a CVSS score 8.8, is a libcurl remote code execution flaw that could cause commands to be executed when Curl attempts to connect to a malicious The vulnerability CVE-2024-20659, with a CVSS score 7.1, is a UEFI bypass that could allow attackers to compromise the hypervisor and kernel [6]. The vulnerability CVE-2024-43583, with a CVSS score 7.1, is an elevation of privileges flaw that could give attackers SYSTEM privileges in Windows [7]. Detailed information about each vulnerability and affected systems can be found in Microsoft’s It is recommended applying updates to the affected devices as soon as possible, prioritising Internet facing devices, and critical servers.

News Coverage

No coverage found in monitored research blogs or news feeds.

CVEs Referenced in This Publication

CVECVSSAffected
CVE-2024-43572 7.8 High Microsoft Windows Microsoft Windows Management Console contains unspecified vulnerability that allows for remote code execution.
CVE-2024-43583 7.8 High Microsoft Windows 10 Version 1507 Winlogon Elevation of Privilege Vulnerability
CVE-2024-6197 7.5 High curl curl libcurl's ASN1 parser has this utf8asn1str() function used for parsing an ASN.1 UTF-8 string. Itcan detect an invalid field and return error. Unfortu…
CVE-2024-20659 7.1 High Microsoft Windows 10 Version 1809 Windows Hyper-V Security Feature Bypass Vulnerability
CVE-2024-43573 6.5 Medium Microsoft Windows Microsoft Windows MSHTML Platform contains an unspecified spoofing vulnerability which can lead to a loss of confidentiality.

Extracted from the publication text. Each CVE links to its tracked detail page.

Vendors Named in This Publication

Each vendor links to its Known Exploited Vulnerabilities catalog page. Only vendors that appear in the KEV catalog are listed, either because the publication cites one of their KEV entries or because it names them directly.