Security-X

Forum Security-X => News => Discussion démarrée par: igor51 le août 09, 2017, 18:00:20

Titre: [Trend]Critical Windows Search and Hyper-V Vulnerabilities Tackled by August’s Patch Tuesday
Posté par: igor51 le août 09, 2017, 18:00:20
Critical Windows Search and Hyper-V Vulnerabilities Tackled by August’s Patch Tuesday

Microsoft has released their monthly security bulletin with 48 security patches—25 of which are labeled Critical, 21 are Important, and two are Moderate in severity. This was a standard batch of updates, addressing issues in Internet Explorer, Microsoft Edge, Windows, Microsoft SharePoint, Adobe Flash Player and Microsoft SQL Server.


A majority of the critical CVEs are Scripting Engine Memory Corruption Vulnerabilities, which is not surprising. Since April of this year, we’ve been seeing a steady increase in vulnerabilities for the Scripting Engine. Typically, in a web-based attack scenario, an attacker would leverage Scripting Engine vulnerabilities to create a malicious website and then maneuver users to visit the site. This current batch of critical vulnerabilities could result in remote code execution if exploited successfully.


Post from: Trendlabs Security Intelligence Blog - by Trend Micro


Critical Windows Search and Hyper-V Vulnerabilities Tackled by August’s Patch Tuesday


Source: Critical Windows Search and Hyper-V Vulnerabilities Tackled by August’s Patch Tuesday (http://feeds.trendmicro.com/~r/Anti-MalwareBlog/~3/lG6t5z2Kyk0/)